billimek / homelab-infrastructure

Infrastructure info and setup for homelab
Apache License 2.0
47 stars 12 forks source link

implement wireguard #9

Closed billimek closed 4 years ago

billimek commented 4 years ago

It is more appropriate to leverage wireguard to access (most) of the services currently facing the internet.

Consider running wireguard server on the edgerouter, pi docker container, or as a helm chart:

billimek commented 4 years ago

Wireguard implemented on edgerouter and iOS.

Next step (not for this issue) is to figure out what things currently exposed to the internet via ingress should be limited to VPN instead.

Current list (bolded items are probably safe to expose to internet):