I have been running a large server 24/7 for about a month and a half now. It is only for myself and the fam, no one else has access to it at all.

I’m trying to learn about selfhosting and whatnot, but it’s…a lot. Is there anything I need to do specifically besides configuring it correctly in order to protect it and myself. I hear people talking about putting stuff in dockers, putting things behind a reverse proxy, a VPN, etc.

I do currently have it running behind ProtonVPN but that’s it. Do I need to be doing more?

Thanks in advance for any help!

  • Spice Hoarder@lemmy.zip
    link
    fedilink
    English
    arrow-up
    2
    ·
    4 days ago

    You say “No one else has access to it at all” and also say it’s connected to proton VPN. So the server is hooked up to the internet. Which does necessitate security updates.

    But the bigger question is. How do you access the server? Have you opened ports on your router?

    • MTZ@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      4 days ago

      As far as I can tell, the server is not accessible to anyone who is not on my home network. I only access it on devices that are on my home network.

      No, I didn’t do any configuration whatsoever with my router.

      • Spice Hoarder@lemmy.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        4 days ago

        You’re still open to remote arbitrary code execution if the device is connected to the internet. Just keep your system up to date, and LTS