Just exposed Immich via a remote and reverse proxy using Caddy and tailscale tunnel. I’m securing Immich using OAuth.

I don’t have very nerdy friends so not many people appreciate this.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 days ago

      This is necessary for CGNat ISPs. That or cloudflared or ngrok or the like. Because you aren’t really routable on a CGNAT address.

      • kratoz29@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 days ago

        In a nutshell, CGNAT users must spend money for something that people with IPv4 addresses can do for free 😔

        • Overshoot2648@lemm.ee
          link
          fedilink
          English
          arrow-up
          2
          ·
          2 days ago

          We wouldn’t be in this mess if we switched to ipv6, but nOoOooOo… we can’t possibly do that…

          • kratoz29@lemm.ee
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 day ago

            Actually my ISP supports IPv6 (it is very erratic though) so I can access some of my services outside through it without using VPNs (only using a reverse proxy for the 443 port), but still is very annoying when I want to use them with IPv4 only networks, such as my carrier mobile data, I suffer from this especially when wanting to use Plex.

      • kratoz29@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 days ago

        Ah, I figured… I used to do this with Wireguard instead of Tailscale.