this post was submitted on 15 Aug 2023
9 points (84.6% liked)

Selfhosted

39282 readers
279 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 1 year ago
MODERATORS
 

Total noob, but I set up TrueNAS/Nextcloud on an old laptop and it's working great locally.

What would be the easiest secure way to access my files remotely from my phone and/or laptop?

top 23 comments
sorted by: hot top controversial new old
[–] xtremeownage@lemmyonline.com 5 points 1 year ago

Vpn.

Openvpn or wireguard.

[–] techgearwhips@lemmy.world 4 points 1 year ago (3 children)

Tailscale. Download it and you'll be up and running in 5 minutes. Don't use cloudflare tunnels unless you plan on opening it up to the public. Then you can go that route.

[–] LazerDickMcCheese@sh.itjust.works 1 points 1 year ago (1 children)

Second on that. The whole "it just works" slogan was frustrating when it didn't work at first, but once it finally for running it was great

[–] NENathaniel@lemmy.ca 1 points 1 year ago (1 children)

What exact route did u advertise? I'm having trouble getting it working

Trust me, you don't want to get instructions from me. Just look at my post/comment history haha everything I touch breaks in ways that are hard to diagnose. I had to reach out to tech support, they got back to me in <12hrs

[–] NENathaniel@lemmy.ca 1 points 1 year ago (1 children)

Hey, I'm testing it and I have it installed on my phone/PC/TrueNAS but having trouble getting access remotely (testing on data).

I think I have the part "Advertise Routes" wrong, how to I know what IP to put in exactly

[–] techgearwhips@lemmy.world 1 points 1 year ago (1 children)

You put the ip address that tailscale gives you along with the port number of your NextCloud instance.

[–] NENathaniel@lemmy.ca 1 points 1 year ago* (last edited 1 year ago) (1 children)

Is the port number the 4 numbers after the : which I use as a url to access Nextclouds web gui?

Also that means I should be adding two routes?

[–] techgearwhips@lemmy.world 0 points 1 year ago (1 children)

Yes the port number is the last 4 digits after the :.

Tailscaleip:nextcloudport

[–] NENathaniel@lemmy.ca 1 points 1 year ago* (last edited 1 year ago)

Sorry for the questions, how do I know which Tailnet IP to use? Each device seems to get a different address and a I tested a couple and neither worked

A tutorial I watched used 192.168.3.0/24. I tested this and it didn't give me any errors and it connected to tailscale, but I couldn't actually access things remotely

[–] jbarr@lemmy.world 0 points 1 year ago

For restricted access, I add a Cloudflare Application in front of the Tunnel to provide authentication. Work's like a charm, and the user never hits my services unless they successfully authenticate.

[–] huskypenguin@sh.itjust.works 1 points 1 year ago (1 children)

Your nextcloud isn't public facing?

[–] NENathaniel@lemmy.ca 1 points 1 year ago (1 children)

I don't think so? It's whatever the default is aha I am new to networking like this

[–] huskypenguin@sh.itjust.works 1 points 1 year ago (1 children)

Out of curiosity what are you using nextcloud for? Most people use it for public facing collab and sharing, and it's an absolute beast to maintain because it's so complicated.

[–] atzanteol@sh.itjust.works 2 points 1 year ago (1 children)

I've been running it for years with very little maintenance... What about it is a "beast?"

[–] huskypenguin@sh.itjust.works 0 points 1 year ago

Just google "nextcloud frustration"

[–] Decronym@lemmy.decronym.xyz 1 points 1 year ago* (last edited 1 year ago)

Acronyms, initialisms, abbreviations, contractions, and other phrases which expand to something larger, that I've seen in this thread:

Fewer Letters More Letters
CGNAT Carrier-Grade NAT
IP Internet Protocol
NAT Network Address Translation
VPN Virtual Private Network
VPS Virtual Private Server (opposed to shared hosting)

5 acronyms in this thread; the most compressed thread commented on today has 8 acronyms.

[Thread #46 for this sub, first seen 15th Aug 2023, 02:15] [FAQ] [Full list] [Contact] [Source code]

[–] SpacePirate@lemmy.ml 0 points 1 year ago (1 children)

TrueNAS has an OpenVPN plugin available, which is typically the recommended option.

[–] Bread@sh.itjust.works 0 points 1 year ago (1 children)

If you are using Scale, it has been depreciated. Rather inconvenient for me as I have to come up with a new solution.

[–] tarjeezy@lemmy.ca 2 points 1 year ago

Yea, I didn't like that they are going to drop support in the next version or whatever. Not sure if it's their intended replacement, but Wireguard is installed by default in TrueNAS Bluefin. I recently switched to that, and I find the performance is way better than OpenVPN.

[–] loganb@lemmy.world -1 points 1 year ago* (last edited 1 year ago) (1 children)

My recommendation would be some kind of VPN. If your looking for something plug and play and free, look into zerotier.

If your home internet connection sits behind CGNAT, like me, just buy a cheap vps and set up your own wireguard network.

Both solutions avoid exposing your services directly to the public internet which reduces attack vectors and adds an extra layer of encryption.

[–] NENathaniel@lemmy.ca 1 points 1 year ago (1 children)

Idk what CGNAT is tbh so I doubt it.

Other comment mentioned OpenVPN, would you say Zerotier is an easier option?

[–] unscholarly_source@lemmy.ca 1 points 1 year ago

I had literally just set this up on my truenas instance yesterday (even though I've been using ZeroTier for some time). The key thing to recognize is that truenas whipes out any modifications to its system after a reboot, hence the need for this script.

https://alan.norbauer.com/articles/zerotier-on-truenas

I've heard great things about tailscale, but just have had an opportunity to try it.