How to use Cloudflare Tunnel in your Homelab (even with Traefik)

  Рет қаралды 135,098

Christian Lempa

Christian Lempa

Күн бұрын

This is a tutorial on how to use Cloudflare Tunnels in a Homelab to make internal applications easily accessible on the public internet securely. The video covers the benefits of using Cloudflare Tunnels for personal websites, Homelab dashboards, or any web-based application that needs to be accessed from outside the network without complicated router configuration. And it also discusses the security of Cloudflare Tunnels and shares best practices for exposing administrative interfaces. #homelab #cloudflare #cloudflaretunnel
DOCS: github.com/ChristianLempa/vid...
Warp-*: www.warp.dev/?...
Docker-Networking Tutorial: • Docker Networking Tuto...
Follow me:
TWITTER: / christianlempa
INSTAGRAM: / christianlempa
TWITCH: / christianlempa
DISCORD: / discord
GITHUB: github.com/christianlempa
PATREON: / christianlempa
MY EQUIPMENT: kit.co/christianlempa
Timestamps:
00:00 - Introduction
00:47 - Advertisement-*
01:42 - How Cloudflare Tunnel works
03:13 - Getting started
04:49 - Set up first Cloudflare Tunnel
05:49 - Deploy Cloudflare Tunnel in Docker-Compose
10:50 - Set up first public hostname
13:12 - Use Cloudflare Tunnel with Traefik
19:18 - Access Control
________________
All links with "*" are affiliate links.

Пікірлер: 248
@rbdconstantine3293
@rbdconstantine3293 Жыл бұрын
I would so love to meet this guy and be best friends with him and every time I watch his videos I feel so influenced to dive into technology more and more it’s crazy!
@christianlempa
@christianlempa Жыл бұрын
This is such a nice compliment! Thank you buddy :)
@GrimSpec
@GrimSpec Жыл бұрын
Right :) "Evening conversations over beer at a pub" with Jeff Geerling, Timothy Stewart and Lewis Barclay
@jasenwar
@jasenwar Жыл бұрын
It’s ze accent for meee!!!
@Andreas360dk
@Andreas360dk Жыл бұрын
I would just love to have friends to nerd talk with. I work in IT and I am not even sure my colleagues know what Docker is. IT in my country is influenced too much by our education system that still teaches token ring, WIC-2A/S ports for data between routers. Even our vendors that deliver software/web solutions act confused if I ask them what programming languages they use e.g Python, GO, Rust, PHP like they have not even heard of anything besides Visual Basics 2000 The closet I think I have is my engineer friends who are very up to date :) Sorry for the semi rant guys. Have a nice weekend :D
@warpdotdev
@warpdotdev Жыл бұрын
This is a great video, Christian! Thank you for shouting out Warp in the beginning 👍
@GrimSpec
@GrimSpec Жыл бұрын
Awesome! Thank you, Christian, again for the great motivation :D Every time I watch your videos, I feel inspired to implement your techniques into my own homelab or at least start experimenting with them. By the way, I would be more than glad to hear your recommendations for securing access to exposed services through these tunnels. Cheers!
@codester_d
@codester_d Жыл бұрын
Been using this setup for months now. Setting up Cloudflare access to use authentik for the oidc was pretty straightforward.
@AnthWinter
@AnthWinter Жыл бұрын
The videos on your channel have helped SO much! Any idea/question I've had, you seem to always have a video for it with answers. Awesome stuff.
@christianlempa
@christianlempa Жыл бұрын
Thank you so much! I'm glad the channels helps you :)
@ronkierstead
@ronkierstead Ай бұрын
I watched this to learn more about the access control feature for self hosted, and that wildcard "*" was the answer I was looking for. Thank you!
@ArthurOnline
@ArthurOnline 10 ай бұрын
Yes! Yes! Yes! on the Cloudflare video, absolutely would love to go deeper, thank you
@whiteout6000
@whiteout6000 Жыл бұрын
ich wurde schon bekloppt mit vaultwarden und reverse proxy - mit cloudflare gehts so easy - DANKE !! du hast mir den feiertag gerettet
@qoutwest
@qoutwest Жыл бұрын
Digging the new earthy background!
@Theborg72
@Theborg72 Жыл бұрын
hey saw a clip before on this and started to look around a bit. but you are doing much better and looking forward to your clips. Has helped a lot to get ahead and also got answers to many questions.
@christianlempa
@christianlempa Жыл бұрын
Thank you 😊
@drbyte2009
@drbyte2009 Жыл бұрын
Again a great and very clear video Christian !
@EduardoSantanaSeverino
@EduardoSantanaSeverino Жыл бұрын
Excellent, exactly what I was waiting for.
@christianlempa
@christianlempa Жыл бұрын
Great to hear! I hope you like it! :)
@henrysowell
@henrysowell Жыл бұрын
I would love to see a video on the authentication recommendation and setup! Great video!
@christianlempa
@christianlempa Жыл бұрын
Thank you!
@dbishop9085
@dbishop9085 Жыл бұрын
@@christianlempa yes! I have authelia set up and I cannot get it to work with anything other than the local domain setup. It does not work at all for the cloudflare tunnel portion of the rule. :( If there is a suggestion on how to do that, I am all ears as I have been trying for about 2 days now.
@dbishop9085
@dbishop9085 Жыл бұрын
i was able to get it working finally lol
@v-for-victory
@v-for-victory Жыл бұрын
Christian, your Videos get better and better. This is such a good explanation of this complex, I can only say Wow. Well done. 👍
@christianlempa
@christianlempa Жыл бұрын
Thank you so much 😊
@vanhyr
@vanhyr Жыл бұрын
Hey Christian, thank you for your dedication to each video and for your great selection of new topics as well as a very intuitive explanation process. Me personally, I'm under a CGNAT on a local ISP and I'm in need to use cloudflare tunnels and its great to see that you can still use traefik for load balancing, that was a great thing you showed me with this video. I'm curious since traefik can run in the internal network, couldn't authelia be deployed with traefik inside the internal network to provide an extra 2FA layer of security? I'm also excited to learn teleport if that's a more convenient way of exposing my services than cloudflare tunnels.
@darrenoshaughnessy3921
@darrenoshaughnessy3921 Жыл бұрын
PERFECT Timing! I've been using CloudFlare tunnel on my server for a while, but decided to do a cleanup/consolidation on my Docker networks. Realized I had used the command line to set the tunnel up originally, but wanted to set up a stack in Portainer to handle future updates. Everything I need was in the tutorial (BTW - I think there might be a typo in the command to set up the token). THANKS!
@SabreToothedSam
@SabreToothedSam Жыл бұрын
Can't agree more, this is perfect timining! I just setup docker and a CloudFlare tunnel for the first time on my home server. This guide has definitely showed me a few more things I'll want in my setup.
@darrenoshaughnessy3921
@darrenoshaughnessy3921 Жыл бұрын
@@SabreToothedSam this guide showed me a few things I had to FIX in my setup - Christian's videos are the best 👍
@completelyMT
@completelyMT Жыл бұрын
Great video. Would love to see a video on setting up the various authentication methods and creating better policies for self hosted apps (including allowing API access to them). Thanks heaps
@1983Jedis
@1983Jedis Жыл бұрын
As always, you are on top 👍
@christianlempa
@christianlempa Жыл бұрын
Thanks! 😃
@s3rgio340
@s3rgio340 Жыл бұрын
That's amazing. I have a network with the same setup, and I couldn't manage to get to work cloudfare tunnels + traefik. Thanks a lot for sharing!
@christianlempa
@christianlempa Жыл бұрын
You’re welcome :)
@thiagobarrichelo
@thiagobarrichelo 2 ай бұрын
Hey buddy , thanks a lot for this exclellent tutorial. Your tshoot demonstrating the need for both fqdn's in the Traefik Ingress Route saved me a good deal of time to figure out why setup wasn't working. You're the best thanks a lot!!!👍😀
@christianlempa
@christianlempa 2 ай бұрын
Glad it was helpful
@TheTran-tf5ri
@TheTran-tf5ri Жыл бұрын
Superb, many thanks 🎉
@toolbelt
@toolbelt Жыл бұрын
Thank you for this and all of your videos. Fantastic.
@christianlempa
@christianlempa Жыл бұрын
Thank you for this feedback! :)
@Glatze603
@Glatze603 Жыл бұрын
Hi Christian, thanks for your good work on this nice topic! I use cloudflared on a separate ubuntu server in my dmz as connector. The publishing services are running on other servers (and dockers) in separate vlans. I only allow the configured ports, protocols and target-server in my firewall, so that other communication from tdmz to other internal networks isn´t allowed. One advantage over teleport is, that I do not need a cloud-server. Another point is, that cloudflare offers a kind of application firewall on top to the 2fa login, so access to my applications is further narrowed down. The other side is, that in this case we have to trust in cloudflare. I also like it to self host applications and solutions, so I would be happy if you make another video about teleport, how to install, configure and use it. Thanks a lot 🙂
@MotivationalSound1818
@MotivationalSound1818 Жыл бұрын
PERFECT!!! PERFECT!!! PERFECT!!! THANK YOU!!!
@christianlempa
@christianlempa Жыл бұрын
Thank you :)
@la3135
@la3135 Жыл бұрын
Awesome video Christian!
@christianlempa
@christianlempa Жыл бұрын
Thx!
@try-that
@try-that Жыл бұрын
Have to say, that was probably the best video I've watched on CF tunnels, very nicely explained 😁
@christianlempa
@christianlempa Жыл бұрын
Thank you so much, what a nice statement! :)
@RuanBekker
@RuanBekker Жыл бұрын
Great video! (As always) 🎉
@christianlempa
@christianlempa Жыл бұрын
🙏 thanks
@TapiTapiTap
@TapiTapiTap Жыл бұрын
@cristian Thanks for the amazing guides I whould love to see you setup and configure authentik with truenas scale seems there are not guides on this subject and will be very populat as a replacement for authellia that is complex to setup and manage
@nickswebtsv
@nickswebtsv Жыл бұрын
I literally just worked out how to do this myself last weekend. Good to see if what I was doing is what everyone does with integrating Cloudflared and Traefik.
@christianlempa
@christianlempa Жыл бұрын
Nice! I knew I was doing it right :D
@Babasile
@Babasile Жыл бұрын
Great video! Thanks! 😃
@christianlempa
@christianlempa Жыл бұрын
Thx :)
@cloud2050
@cloud2050 Жыл бұрын
Great video! Can you do an in-depth video covering those settings in the cloudflare zero trust for exposing web application? How to allow mobile app api access while locking down web access.
@anthonyrussano
@anthonyrussano Жыл бұрын
i have been using this method for about 6 months now
@mykyar9142
@mykyar9142 Жыл бұрын
Yeah! This will be my next step!
@christianlempa
@christianlempa Жыл бұрын
Nice! Let us know how it goes :)
@mykyar9142
@mykyar9142 Жыл бұрын
@@christianlempa Update. I've bought a domain on Cloudflare. Connected it to my dedicated IP. And with configuring the firewall on the Mikrotik router I passed the traffic to my Kubernetes cluster on the Orange Pi5 boards. I'm a developer and just started to learn self-hosted Kubernetes. Danke schön for your videos! They really help me a lot!
@cheebadigga4092
@cheebadigga4092 Жыл бұрын
Great video! I would've really liked to see the deal with those private networks you can setup in Zero Trust. Not sure if the WARP client thing is the same as a simple custom WireGuard container/VM.
@damyanmp
@damyanmp Жыл бұрын
amazing! The 404 cost me HOURS! I couldn't figure out why it's re-routing traffic externally but not internally in the cluster. Made the same change as you did but not with labels per service, instead added a route in the ingress. 10 seconds of gold
@christianlempa
@christianlempa Жыл бұрын
Haha, it did cost me ~4 hours, too! 😂 but glad we could sort it out :)
@kingkong-kw8jr
@kingkong-kw8jr Жыл бұрын
youre such a amazing guy
@christianlempa
@christianlempa Жыл бұрын
Thx xD
@khanhthedag7269
@khanhthedag7269 4 ай бұрын
nice tutorial. thanks
@christianlempa
@christianlempa 4 ай бұрын
Glad you liked it!
@szymonagiewka4513
@szymonagiewka4513 Жыл бұрын
CF Tunnel is what I'm using to expose my Matrix and Mastodon servers endpoint so they can federate. Otherwise I still prefer accessing stuff via Tailscale (which BTW recently added Tailscale Funnel). But Cloudflare is a different kind of beast if you want to combine Warp with Tunnel or Warp-to-Warp, but I digress 😃
@gmsipe
@gmsipe Жыл бұрын
I agree and just switched from CF tunnel to Tailscale/traefik. It's simpler, faster, and at least as secure.
@ultravioletiris6241
@ultravioletiris6241 Жыл бұрын
@@gmsipe Im learning how to set up Tailscale with Traefik. Was it difficult for you?
@pavelperina7629
@pavelperina7629 Жыл бұрын
Just done this before watching this video last week. I don't mind exposing my ip address, people can already guess and I had to move ssh port higher. Because it was constantly abused. It still is, but with much lower rate. But advantage is that it somewhat helps with other stuff: you don't need nginx reverse proxy, you don't need to renew let's encrypt certificates for each service every three months, you don't need to setup port forwarding on docsys modem/router and open port 443 whenever it needs factory reset. I just haven't tried this for ssh and to have dynamic dns (script that checks local ip every 30 minutes and renews dns when it changes - which can be likely done via cloudflare api) and to for blocking access based on country.
@Paneking95
@Paneking95 10 ай бұрын
First of all, awesome guide as always! Now, what I kind of miss is your Traefik setup. Your other video with Traefik helps, but I somehow can't get certificates from Let's Encrypt. Are your Traefik settings different when you use it with Cloudflare Tunnel?
@stefantest5320
@stefantest5320 Жыл бұрын
How to get Android apps working on the smartphone? Like Nexcloud or Synology apps. Because of the login screen for 1-time password or verification...
@nicoladellino8124
@nicoladellino8124 Жыл бұрын
Very nice video, THX.
@christianlempa
@christianlempa Жыл бұрын
Thanks bro :)
@valour.se47
@valour.se47 Жыл бұрын
Thank you 👍
@christianlempa
@christianlempa Жыл бұрын
You're welcome! :)
@belfakiraberrahim5427
@belfakiraberrahim5427 Жыл бұрын
You're really help me . ❤
@christianlempa
@christianlempa Жыл бұрын
Glad it was helpful :)
@user-bf6tr3pf8o
@user-bf6tr3pf8o 9 ай бұрын
Hello! Great video! Can such a solution be done without a third-party service such as cloudflare? Purpose: hosting services on the open Internet without port forwarding on the router.
@deltawhiplash1614
@deltawhiplash1614 Жыл бұрын
That's a great video I am soo excited for more videos about it about rdp with Cloudflare or access please continue your good work Could you do a video about authentification with Cloudflare access and a self-hosted IAM like Authelia or Keycloak (if possible with a user-friendly UI😅) or nether an existing active directory server
@dbishop9085
@dbishop9085 Жыл бұрын
This ^^
@blevenzon
@blevenzon Жыл бұрын
Brilliant
@christianlempa
@christianlempa Жыл бұрын
Thx :)
@ebaystars
@ebaystars Жыл бұрын
alles klaaar Danke! (from Siam)!
@AlL-fw2cy
@AlL-fw2cy Жыл бұрын
For someone just starting down this home lab rabbit hole would you recommend going this route for exposing services to the Internet for personal and public use or would you recommend a reverse proxy?
@danyalt8221
@danyalt8221 3 ай бұрын
Hey Christian, Thank you for the valuable insights you share on your KZbin channel. I have a question: Is it possible to forgo Traefik's SSL termination mechanism and instead utilize Cloudflare's HTTPS termination service to manage our certificates? I'm curious about the advantages of integrating Traefik's DNS challenge with Cloudflare, especially when we have the option to enable Cloudflare's free SSL/TLS. Thanks.
@Baku-oc5fc
@Baku-oc5fc Жыл бұрын
Christian, can you make some recommendations regarding how to employ "authentication providers and other security measures" due to TLS terminating at CF? What specifically have you done to mitigate this risk? Thanks!
@gerard-infopro6601
@gerard-infopro6601 Жыл бұрын
It would be interesteing to see how works with RPD, or CIFS/SMB works
@ctyl5686
@ctyl5686 Жыл бұрын
Great video - thank you. Have you been able to use a Cloudflare Tunnel to access Apache Guacamole?
@antoninoromeo4015
@antoninoromeo4015 Жыл бұрын
Hi great video, where can i find your video about local and external ssl and dns configuration? i like a lot that😀
@MehranZiadloo
@MehranZiadloo Жыл бұрын
Thanks a lot. It worked like a charm with TrueNAS Scale as well (TrueCharts).
@christianlempa
@christianlempa Жыл бұрын
Thank you 🙏
@MehranZiadloo
@MehranZiadloo Жыл бұрын
@@christianlempa Question: I've successfully installed the TailScale on my TrueNAS Scale and I can ping it using the IP TailScale is assigning to it. But when I add that same IP as an alias to network interface and then set that IP as the Kubernetes' Node IP, I cannot access my apps through VPN. I'm trying to make it so whenever I'm connected to the VPN, I can use my TrueNAS Scales apps. Do you know how I can make this work?
@itdevops
@itdevops Жыл бұрын
I have à question you know if this tunnel or other we can connect with same ip but différent port. Ex: yacht app like portainer, because need always change the tunnel ip:port for access 😢. Ty
@beauthompson5338
@beauthompson5338 Жыл бұрын
Hi christian I have a salf hosted rust desk server that need tcp and udp ports open and exposed to the internet can this be done with a tunnel or is there a better way?
@agr2639
@agr2639 Жыл бұрын
Great video. Finding tunnels great for home use. I would like to enable more security, but can you think of a way to do this that still allows mobile apps (nextcloud) to access the tunnel? Would like to see a video about this.
@HirschyKiss
@HirschyKiss Жыл бұрын
Hey Christian, just wanted to point out that your zsh history prefiller may have leaked a production token. I'm sure you probably noticed and it's all good, but just wanted to let you know
@frederickwood9116
@frederickwood9116 2 ай бұрын
Thanks for this. Fantastic material. Your linked video on docker networks was great also. However! 😂. It never explains your use and configuration of the backend and frontend networks. Where is that covered?
@EduardoSantanaSeverino
@EduardoSantanaSeverino Жыл бұрын
It would be nice to see a video about the authentication, Because, For example, if I setup the nextcloud using the tunnel, and I enabled the one time pin authentication, then, I am not sure if the nextcloud mobile application would still connect to this nextcloud instance, as the end point would be protected by one time pin, probably the mobile app would fail to connect. Thanks for your comments.
@EduardoSantanaSeverino
@EduardoSantanaSeverino Жыл бұрын
I was able to setup SSH access, and it works like a charm.
@XD-Luke
@XD-Luke 4 ай бұрын
Hi Chris, many thanks for the detailed instructions. As always, very well explained. I wanted to ask which tool you used to create the sketches... always makes the one or other system structure a little clearer 😉, thanks in advance, greetings
@christianlempa
@christianlempa 4 ай бұрын
I think it was excalidraw at that time
@sheltonngwenya3281
@sheltonngwenya3281 Жыл бұрын
Hi Christian. Lovely content as usual, great work! What keyboard are you using?
@christianlempa
@christianlempa Жыл бұрын
Thanks! :) Keychron K3
@shawnhu
@shawnhu Жыл бұрын
I used it as a VPN. For some sites that only serve certain country or regions, use Cloudflare to avoid being denied access.
@evanmarshall9498
@evanmarshall9498 9 ай бұрын
So, I have created the tunnel and it says it is working. I added nginx container and public hostname as you suggested. I head to that URL and it says: bad gateway at host.
@scubeedu2
@scubeedu2 10 ай бұрын
Hi Chrisitan: Got this working fine so long as everything is running inside the same docker container as Traefik. Is it a simple process to have Traefik function across multiple docker containers on different machines? I have programs on other servers that I would like to proxy, but Traefik cannot see them.
@rayshadow6796
@rayshadow6796 9 ай бұрын
How do I connect the new tunnels with nginx proxy manager?
@TenSpeed10
@TenSpeed10 10 ай бұрын
Thank you for all your videos! I did have one question, perhaps you discussed this in another video but I missed it - can you explain your rationale and usecase for your "frontend" and "backend" networks?
@Ohamdaoui
@Ohamdaoui 9 ай бұрын
Have you figured out how to do that ? I have the same question, how to create the network service backend or fronted. I have created one in portainer but it does not work.
@xer2964
@xer2964 4 ай бұрын
If I'm not mistaken here. So we don't need manually add new ingress on cloudflared tunnel dashboard ? Just label all container??
@danielwilson3755
@danielwilson3755 Жыл бұрын
I would love to see a video about Teleport!
@christianlempa
@christianlempa Жыл бұрын
Coming soon :)
@nghiepvo4493
@nghiepvo4493 6 ай бұрын
hi @Christian Lempa, Thank you, I have a question, how do you install traefik plugin from Github? I also try to install it, but it's fail with invalid download
@stephenj3972
@stephenj3972 Жыл бұрын
Is it possible to combine this with authelia? When ive been trying traefik isnt pushing through authelia?
@subzizo091
@subzizo091 Жыл бұрын
hey Christian, thanks for the great videos please I am facing the same error "404 page not found" Could you please explain more about how to change the labels as you did in the video noting that my docker containers are hosted remotely on a VPS also I am using nginx proxy manager I will try to replace it with traefik soon but i think its the same problem
@Rockshoes1
@Rockshoes1 Жыл бұрын
Please closer look at the cloudflare authentication settings
@virtualizeeverything
@virtualizeeverything Жыл бұрын
i would look to have a look at the settings
@maximeaube1619
@maximeaube1619 Жыл бұрын
This looks so convenient and easier to setup compared to the traditional port forwarding method ! I'll definitely look into CF tunnels.
@christianlempa
@christianlempa Жыл бұрын
Nice! :D Hope it works great for you
@brijeshdave
@brijeshdave Жыл бұрын
Which local dns server do you use ? Please suggest some with gui
@jonasr.r4951
@jonasr.r4951 Жыл бұрын
Hello, thanks for this amazing video. One question: what is the app you use to diagram on 3:13m ?
@christianlempa
@christianlempa Жыл бұрын
You're welcome! That was excalidraw
@hotrodhunk7389
@hotrodhunk7389 9 ай бұрын
Cloudflare tunnels are so good. Even have a ssh tunnel with two factor. No need to expose ports.
@Lovesickdangerboy
@Lovesickdangerboy Жыл бұрын
What’s the reasoning behind disabling auto update in cloudflared container and not using the latest tag?
@FedericoBechini
@FedericoBechini 5 ай бұрын
how I can view or monitor for example IP of the machine that connects and use my tunnel expose website? I dont see a monitor for activity on cloudfare dashboard
@danienell5248
@danienell5248 Жыл бұрын
Any advice on allowing access to Postgres via Cloudflare tunnel??
@xtoorgaming3982
@xtoorgaming3982 7 ай бұрын
You need to make a video on ZeroTier one
@websitemain9260
@websitemain9260 Жыл бұрын
videos good . hey man i have questions how to i look domain user data usage and how to limited data ? ....... please help
@vasquezmi
@vasquezmi Жыл бұрын
Hello Christian what are you using for your data / network diagrams in this video?
@christianlempa
@christianlempa Жыл бұрын
excalidraw
@niravraychura
@niravraychura Жыл бұрын
Thank you for sharing this with us.. Quick question.. Can I use it in selfhosted mail server ?
@christianlempa
@christianlempa Жыл бұрын
You're welcome! Maybe with using a TCP public host? I haven't tested it though.
@niravraychura
@niravraychura Жыл бұрын
@@christianlempa I tried with hestiacp but no luck there.. May be I have to troubleshoot something. (Hestiacp because it has builtin webmail function and it can run with smtp relay easly)
@denesk2794
@denesk2794 Жыл бұрын
Word of warning: Streaming video or serving disproportionate amount of images is prohibited by CloudFlare. Watching your camera feeds will get your account terminated. It is actually somewhere in their Tunnels agreement.
@christianlempa
@christianlempa Жыл бұрын
Thanks for sharing!
@denesk2794
@denesk2794 Жыл бұрын
@@christianlempa No problem. I figured it from a youtube video about Blueiris and how some people lost their accounts over that. I was about to put my Blueiris there, but now I rather just go with a VPN I already have (Nord has an internal feature they call Meshnet)
@Jinx_Cole
@Jinx_Cole 5 ай бұрын
If I were to self host a game server like "Project Zomboid" in a container on my ProxMox server would CloudFlare Tunnel be a good option to secure my Homelab. Or would somthing like this introduce too much latency. I have only ever seen people using this service with things that aren't that effected by latency.
@metromanu
@metromanu Жыл бұрын
what if the self hosted setup includes both Træfik and Authelia? Is there something different to be done there? I can reach a simple Nginx container in the same network, but when I try to reach containers behind Træfik and Authelia, I cannot seem to reach them. Thanks for the great videos!
@christianlempa
@christianlempa Жыл бұрын
Haven't tried it with Authelia, yet.
@dbishop9085
@dbishop9085 Жыл бұрын
@@christianlempa This would be great to know how to do
@ewfzappadis
@ewfzappadis Жыл бұрын
Hello , first of all, let me thank you (from France) for the excellence of your videos. As a total noob, . I followed your video on creating a tunnel with Cloudflare and it worked very well, but today my two tunnels are down and I can't find any explanation anywhere. Do you have any suggestions for me? Thanks for everything you do.
@christianlempa
@christianlempa Жыл бұрын
Thanks mate! Join our discord and share some details about your setup and logs, maybe we can help you :)
@milicsantiago
@milicsantiago Жыл бұрын
Great
@christianlempa
@christianlempa Жыл бұрын
Thx! :)
@gowthamsurya9655
@gowthamsurya9655 Жыл бұрын
Hello Christian, I am using container name as URL in public hostname section. But it doesn't work. Only docker network IP work for me. Can i know why ? Please..
@SeanAnthony
@SeanAnthony Жыл бұрын
Christian what's apps are ruuning on your Frontend and Backend custom networks? Can I place the CF Tunnnel on a different machine and still access custom networks (using DNS names instead of IP address) when setting up public hostnames in Cloudflare?
@christianlempa
@christianlempa Жыл бұрын
The custom network is needed to allow dns resolution, but you could actually just use 1 custom network
@SeanAnthony
@SeanAnthony Жыл бұрын
@@christianlempa can Portainer use a custom network or is it stuck to use “bridge” network?
@Voigt_Analytics
@Voigt_Analytics 23 күн бұрын
Interessanter Ansatz! Wieder ein Pluspunkt für Traefik. Würde aber sehr gerne beim NPM bleiben, da ich nicht alles in Docker-Containern habe mir der händische Weg mit GUI irgendwie besser gefällt. Bin nun dazu übergegangen eine separate Domain für Cloudflare Tunnel zu nehmen und eine andere, die weiterhin klassisch mit DynDNS läuft, für den Fall, dass Cloudflare mal nicht als Option in Frage kommt. Nur wie mache ich das mit Nextcloud AIO o.Ä. wo die Domain hardgecoded festgelegt ist? Da funktioniert der OR-Operator || vermutlich nicht? Bin hier noch etwas überfragt. Besonders Nextcloud möchte man ja auch lokal mit Daten bespielen, ohne gleich alles durchs Internet schieben zu müssen.
@mrshahram7
@mrshahram7 Жыл бұрын
Hi can you make a video for using cloudflare to have access to our SMB server, FTP and SSH from internet? 😢
@dionelysterrero756
@dionelysterrero756 Жыл бұрын
The home assistant does not work and I have added the ips of the proxy servers. What can be the problem?
@pratheepnikhil6252
@pratheepnikhil6252 Жыл бұрын
We can only load static websites. Videos and other streaming will ban the service
@mediocreDevops
@mediocreDevops Жыл бұрын
What's that application that has docker and kube environment at 0:14, TIA
@FedericoBechini
@FedericoBechini 5 ай бұрын
how to expose only certain urls from the server and not all endpoints from the server?
@joshuatheoder2196
@joshuatheoder2196 Жыл бұрын
Hey Christian, I tried setting up a public hostname to my local proxmox management IP, I get the cloudflare bad gateway error (host) and does it matter that the ''Origin Configurations" on the public hostnames page shows 0? Come a long way watchin your videos!
@joshuatheoder2196
@joshuatheoder2196 Жыл бұрын
Some more info, I've installed the cloudflare tunnel on a promox Ubuntu server VM using the copy paste docker command.
@dbishop9085
@dbishop9085 Жыл бұрын
@@joshuatheoder2196 same here, I get a 502 error as well but the local link works fine
Secure authentication for EVERYTHING! // Authentik
39:50
Christian Lempa
Рет қаралды 108 М.
You should NOT use Cloudflare Tunnel (if you do this...)
10:07
Christian Lempa
Рет қаралды 218 М.
Joven bailarín noquea a ladrón de un golpe #nmas #shorts
00:17
Uma Ki Super Power To Dekho 😂
00:15
Uma Bai
Рет қаралды 54 МЛН
Glow Stick Secret (part 2) 😱 #shorts
00:33
Mr DegrEE
Рет қаралды 49 МЛН
Разбудила маму🙀@KOTVITSKY TG:👉🏼great_hustle
00:11
Is this the BEST Reverse Proxy for Docker? // Traefik Tutorial
21:57
Christian Lempa
Рет қаралды 488 М.
Traefik 3 and FREE Wildcard Certificates with Docker
39:37
Techno Tim
Рет қаралды 50 М.
Are small tools safe enough for self-hosting?
10:51
Christian Lempa
Рет қаралды 52 М.
Don’t run Proxmox without these settings!
25:45
Christian Lempa
Рет қаралды 62 М.
This web UI for Ansible is so damn useful!
20:07
Christian Lempa
Рет қаралды 443 М.
Best for Homelab? Traefik vs Nginx Proxy Manager
13:35
Christian Lempa
Рет қаралды 156 М.
The Free and Open Source Software I Use in 2024 - Part 1
28:31
Awesome Open Source
Рет қаралды 129 М.
STOP using VPN, embrace Zero-Trust networking!
24:11
Christian Lempa
Рет қаралды 83 М.
Joven bailarín noquea a ladrón de un golpe #nmas #shorts
00:17