xCruzo
|
World

Put a crowd-sourced firewall in front of my exposed homelab, and it started blocking attacks on day one

Unassigned XDA-Developers ✦ xCruzo 🇺🇸🇪🇸
📄 Read Article
Put a crowd-sourced firewall in front of my exposed homelab, and it started blocking attacks on day one
Browse hubs:CarsAviationMarineMoneySportsWorld
xCruzo Brief

Put a crowd-sourced firewall in front of my exposed homelab, and it started blocking attacks on day one, as a TechLatest/XDA writer describes how adding CrowdSec changed his security posture quickly. After exposing public-facing services via Pangolin, he realized that while his TP-Link Omada ER605 router’s default stateful firewall blocked unsolicited inbound traffic, it had no visibility once requests reached his reverse proxy. His homelab used a repurposed business laptop running Debian, with access via Tailscale and Pangolin, including Gerbil for WireGuard, Traefik for reverse proxying, and Newt as Pangolin’s WireGuard client to a VPS. He had opened ports 80 and 443 for Pangolin, leaving other traffic blocked. Within a few hours, CrowdSec flagged real exploit attempts.

xCruzo quick-read summary • Source: XDA-Developers • Read the full article for complete information.
📄 Read Full Article →
xCruzo xCruzo
See your VIN Report in 15 seconds — Free
1 in 5 cars has an open recall. Is yours one of them?
Not the dealer’s report. Yours.
Choose your detail level — free to full.
For the price of a coffee.
Check My VIN — Free
Free · No credit card · Instant results
Link copied ✓