Secure Home Assistant Remote Access With Cloudflare

  Рет қаралды 11,913

Tech Me Out

Tech Me Out

Күн бұрын

Пікірлер: 33
@WunderTechTutorials
@WunderTechTutorials 2 жыл бұрын
Another great video! Really love that you incorporated Cloudflare and the whiteboard illustration was very helpful!
@TechMeOut5
@TechMeOut5 2 жыл бұрын
Thank you so much, i greatly appreciate it. Thanks for watching!
@rider_85_71
@rider_85_71 Жыл бұрын
This is a really good video, thanks for the very detail information. Now a few things would become clear to me. 👍
@TechMeOut5
@TechMeOut5 Жыл бұрын
Thank you very much. Glad it was helpful
@bdanuw
@bdanuw 2 жыл бұрын
Great video! Thank you. Could you also cover how to enable local network access as well please? What scares me is how to make sure I don't fully lose access if some routing error and can leverage local accounts for a dashboard or something like that... Hope it make sense too.
@bearhntr928
@bearhntr928 2 жыл бұрын
About the 7th one of these from various sources I have watched - all of them have me so confused. I like the White Board aspects - it helps clear (a little). I have some questions. (1) should my CloudFlare A record be the HA name and IP address, or as I have seen use @ for the whole domain? I have it this way, and from my work computer if I ping the FQDN of my HA machine - it replies back with the IP Address (in my home - the one I assigned it). (2) I am eventually hoping to setup a VPN for my entire home using OPNSense setup on my pfSense router - am I going to have problems? Right now I am getting CERT errors in browser.
@keviincosmos
@keviincosmos 2 жыл бұрын
My HA breaks, but when I remove the two .pem files, it works fine, but I can't even access the interface. Really hoped this could help - great guide
@federicoaffif2894
@federicoaffif2894 Жыл бұрын
Hello, excellent channel, I congratulate you, I wanted to ask if Google Assistant can be used with this method because I tried to do it and it didn't work, thank you
@axerontios644
@axerontios644 2 жыл бұрын
Thanks for sharing. Now, most of the network attacks you'll supriced to know that have a source from CDN's like cloud flare. So if you don't do a VPN I would highly avoid exposing your home assistant instance like that.
@TechMeOut5
@TechMeOut5 2 жыл бұрын
You have to remember that for some people using vpn is way over their technical skills. Some people just use duckdns and do a wide open port forwarding on their routers almost waving attackers in. So...is this the perfect solution, maybe not. Is it 100% secure? Nothing is. Is it a step up from other methods? Definitely yes.
@speedup070605
@speedup070605 2 жыл бұрын
Thanks for the video you have shared, I have question about cloudflare proxy. Does it also proxy the response coming from your network? What I mean is when a user tried to connect to your network from the outside cloudflare proxy that request and forwards it the network. When the server (in this case home assistant) responds does it go to cloudflare and then to the requester or does it go directly to the requester?
@boopeshkumarprabhakaran
@boopeshkumarprabhakaran 2 жыл бұрын
hi, great video but i have a issue my ISP dooes not provie static ip soo port forwarding from external does not work. is there any way to fix it?
@AndrewSBaker
@AndrewSBaker 2 жыл бұрын
You can use DDNS and have Cloudflare proxy to that DDNS. It will still work this way for you. (Also he addresses this at the 7 minute mark)
@alphanetworks7475
@alphanetworks7475 2 жыл бұрын
VPN is indeed the safest way but other than that, this looks pretty solid! kudos!
@TechMeOut5
@TechMeOut5 2 жыл бұрын
Thanks for watching!
@dantebassis3470
@dantebassis3470 2 жыл бұрын
from your experience it's possible to use Nginx Proxy Manager add-on to HA and behind Cloudflare, would you need to open ports in this case?
@TechMeOut5
@TechMeOut5 2 жыл бұрын
From my experience this will not work. The very basic condition of you reaching the proxy directly will never happen when using cloudflare. But my experience specifically with ngnix proxy is relatively limited so take it with a grain of salt
@dantebassis3470
@dantebassis3470 2 жыл бұрын
@@TechMeOut5 thanks
@bearhntr928
@bearhntr928 2 жыл бұрын
Update to previous comment - apparently there is something wrong with the CERTS that are coming from CloudFlare per your steps - the CERT is only one level.... where as I have been informed there needs to be My Cert, the intermediate CA and the root CA.
@boopeshkumarprabhakaran
@boopeshkumarprabhakaran 2 жыл бұрын
did not work..may be limited with unifi router(no limited port forwarding option for me)
@jeffer8762
@jeffer8762 2 жыл бұрын
the config snippet doesnt seem to work, i cannot access my HA now...wth
@timsurman3701
@timsurman3701 2 жыл бұрын
Great video and there is little info on Cloudflare and Home Assistant so I really appreciated this video. I have my own domain as well as SSL certs through Namescheap. However, I am running the traditional DuckDNS, NGNIX and let'sEncrypt. I am scared to jump over fully. Is there any way of running both at the same time (I am not worried about security)?
@cliffprescott3112
@cliffprescott3112 2 жыл бұрын
I'm also using this method and i couldnt be happier. its rock solider and most importantly before that i just used duckdns and used port forwarding to access my HA. my firewall IPS was getting 20-30 alerts per day about attempt to access my HA. once i switched over to this method about 6 months ago- nothing, no alerts. that has to be a good thing.
@ericesev
@ericesev 2 жыл бұрын
I think you need to replace or reconfigure your IPS! With so many non-actionable false alerts, how will you find one when there actually is a problem? Now that all the traffic is inside a secure connection, how will your IPS see issues?
@timsurman3701
@timsurman3701 2 жыл бұрын
Can you do another video talking about cloudflare Argo tunnel? I am not familiar with it and it sounds interesting. :)
@TechMeOut5
@TechMeOut5 2 жыл бұрын
Will add that to the list of future videos. Thanks for watching!
@MarkSeniow
@MarkSeniow 2 жыл бұрын
you may want to hide your FQDN when creating the A record at approx the 7:05 mark of the video. otherwise, great video, thanks!
@TechMeOut5
@TechMeOut5 2 жыл бұрын
Thats a demo home assistant instace that is no longer active and the dns record is also long gone so I'm not too worried about it but thanks for noticing, i must have missed that. Anyway, thank you so much for your feedback
@nortechnoob78
@nortechnoob78 2 жыл бұрын
Thank you
@Jimmypl007
@Jimmypl007 2 жыл бұрын
Edit: Hey, Great Video'
@TechMeOut5
@TechMeOut5 2 жыл бұрын
Its ok buddy. I have firewall rules on the cloudflare side that will prevent access to the tunnel unless very spesific criteria is met. Thanks for the heads up
@mattiaippolito1625
@mattiaippolito1625 2 жыл бұрын
I can't make this work.... after checking the configuration with green result I reload the server and it startup in "safe mode" and it doesn't work... the logs are pretty confuse to me... this is the only thing I fund mght be the problem, but I don't know how to fix it.... it's exacltly done as in the video so I don't get this message.... homeassistant.exceptions.HomeAssistantError: Could not use SSL certificate from /ssl/origin.pem: [SSL] PEM lib (_ssl.c:3874)
Deadpool family by Tsuriki Show
00:12
Tsuriki Show
Рет қаралды 4,5 МЛН
The Easiest Free Way To Do Home Assistant Remote Access!
10:39
Everything Smart Home
Рет қаралды 293 М.
Object detection with ANY camera in Home Assistant - Tensorflow and DOODS
15:34
Everything Smart Home
Рет қаралды 127 М.
Remote Access to CasaOS (and Apps) via Cloudflare Tunnels
21:53
5 MUST HAVE SCRIPTS for Home Assistant (Coding Tutorial)
16:24
Smart Home Makers
Рет қаралды 48 М.
Home Assistant Remote Access for FREE - DuckDNS + LetsEncrypt + Single URL
19:04
Everything Smart Home
Рет қаралды 287 М.
DDNS on a Raspberry Pi using the Cloudflare API (Dynamic DNS)
11:44
NetworkChuck
Рет қаралды 373 М.
COMPLETE GUIDE TO HOME ASSISTANT - 2023 Edition
1:00:57
HandyDadTV
Рет қаралды 203 М.
Telefonu Parçaladım!🤯
0:18
Safak Novruz
Рет қаралды 872 М.
Fake Samsung Galaxy S25 Ultra Plus на iOS
0:59
Wylsacom
Рет қаралды 762 М.
Никогда так не делайте #сборка #пк #pcbuild
0:17
XDOT PC - Игровые ПК
Рет қаралды 1,8 МЛН
Paint on adjustments to brightness, saturation, exposure, and more.
0:30
ProMax Editing
Рет қаралды 3,2 МЛН