Just exposed Immich via a remote and reverse proxy using Caddy and tailscale tunnel. I’m securing Immich using OAuth.

I don’t have very nerdy friends so not many people appreciate this.

  • valkyre09@lemmy.world
    link
    fedilink
    English
    arrow-up
    5
    ·
    edit-2
    3 days ago

    I don’t even bother with the internal DNS server. I just set my A records in Cloudflare to point to the private IPs

    • stetech@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 days ago

      Do the private IPs not change at all? Or can you handle that automatically?

      I have next to no experience, but I’m pretty sure that wouldn’t work for me since my IP changes? Idk

      • valkyre09@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 days ago

        You can either set a DHCP reservation in your router, or manually set the IP on the device.

        When I say private IP, I’m referring to the internal IP e.g 192.168.1.X

        Means internally I just go to the domain without having to remember the IP I set.

    • lorentz@feddit.it
      link
      fedilink
      English
      arrow-up
      2
      ·
      3 days ago

      I tired the same, but my router wants to be smart by filtering DNS responses that points to local IP. I guess whoever designed it considered it a security feature. It is a stock router from the ISP, its configuration interface is minimal, borderline to non existent.