• 0 Posts
  • 12 Comments
Joined 1Y ago
cake
Cake day: Jul 17, 2023

help-circle
rss

You need a wildcard cert for ypur subdoman:

*.legal.example.com

Then point that record to 127.0.0.0. This will not resolve for anyone. But you’ll have an internal dns enty (useig pihole/adguard/unbound) that redirects to your reverse proxy.

You could also point to your revers proxy internal address instead of 127.0.0.0.

This video could help you: https://www.youtube.com/watch?v=qlcVx-k-02E



I do. If you run caddy with network_mode: hostor better with network_mode: "slirp4netns:port_handler=slirp4netns" it should work.

also adding:

cap_add:
      - net_admin
      - net_raw

Podman + Caddy does it for me.

You need to adjust the “minimum” port a user can bind. Podman tells you how to do it (or a quick google search).


I switched a year ago to podman and had some trouble to get everything running. But it is possible. I’m not running anything rootful and everything works.

Read the docs, use podman-compose (this sadly has no good docs, but works quit well when you got it) and get ready to play around with permissions and file ownership.




Very nice write up. Thank you for sharing. One thing I like to add.

I’ve personally moved away from nginx proxy manager, because I read an article that it has some vulnerability that don’t get fixed in time. Also there are a ton of issues open on git hub. So I move to caddy, witch also is super easy to set up.


Audiobookshelf is quite nice too. The ebook reader isn’t quite there yet, but it develops very fast. Also apps for Android and iOS


I’ve got myself a second router and created a second wifi and lan with it. All my smart home devices are in there and also the tv.