Discussion
Loading...

#Tag

Log in
  • About
  • Code of conduct
  • Privacy
  • About Bonfire
amilatled
amilatled
@amilatled@snac.la10cy.net  ·  activity timestamp 2 days ago

When #nginx max_connections queue feature is only available in the paid plus version, #haproxy needs to take place in between
Limiting the connections to the poor #snac daemon, which dies on the old hardware, when receiving too much incoming connections (as far i debugged it)

  • Copy link
  • Flag this post
  • Block
dch :flantifa: :flan_hacker: boosted
🍱 Sean ☕
🍱 Sean ☕
@GigaByte4711@whitespashe.uk  ·  activity timestamp 3 days ago

I'm pleased to say I've been able to write a Tutorial series on how to get a quick-and-dirty implementation of Client Certificate Authentication using PFSense and HAProxy!

Feel free to have a read here:
https://seantodd.co.uk/series/client-certificate-authentication-in-pfsense-with-haproxy/

#sysadmin #haproxy #pfsense #homelab

Sean's Blog

Client Certificate Authentication in PFSense With HAProxy

Friendly Neighbourhood SysAdmin. I write about my homelab and home network.
  • Copy link
  • Flag this post
  • Block
🍱 Sean ☕
🍱 Sean ☕
@GigaByte4711@whitespashe.uk  ·  activity timestamp 3 days ago

Just managed to get my first Client SSL authentication working with PFSense and HAProxy!

Getting to understand the ACL ordering was my biggest hurdle, but I can now reject access to my internal apps from the wider internet unless theyre using a client certificate. There's even a bypass for internal IP addresses so I don't need to resort to split-brained DNS!

#sysadmin #haproxy #pfsense #homelab

🍱 Sean ☕
🍱 Sean ☕
@GigaByte4711@whitespashe.uk replied  ·  activity timestamp 3 days ago

I'm pleased to say I've been able to write a Tutorial series on how to get a quick-and-dirty implementation of Client Certificate Authentication using PFSense and HAProxy!

Feel free to have a read here:
https://seantodd.co.uk/series/client-certificate-authentication-in-pfsense-with-haproxy/

#sysadmin #haproxy #pfsense #homelab

Sean's Blog

Client Certificate Authentication in PFSense With HAProxy

Friendly Neighbourhood SysAdmin. I write about my homelab and home network.
  • Copy link
  • Flag this comment
  • Block
🍱 Sean ☕
🍱 Sean ☕
@GigaByte4711@whitespashe.uk  ·  activity timestamp 3 days ago

Just managed to get my first Client SSL authentication working with PFSense and HAProxy!

Getting to understand the ACL ordering was my biggest hurdle, but I can now reject access to my internal apps from the wider internet unless theyre using a client certificate. There's even a bypass for internal IP addresses so I don't need to resort to split-brained DNS!

#sysadmin #haproxy #pfsense #homelab

  • Copy link
  • Flag this post
  • Block

BT Free Social

BT Free is a non-profit organization founded by @ozoned@btfree.social . It's goal is for digital privacy rights, advocacy and consulting. This goal will be attained by hosting open platforms to allow others to seamlessly join the Fediverse on moderated instances or by helping others join the Fediverse.

BT Free Social: About · Code of conduct · Privacy ·
Bonfire social · 1.0.1 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Code of Conduct