• 1 Post
  • 12 Comments
Joined 3 years ago
cake
Cake day: June 15th, 2023

help-circle
  • Yeah but if you want to use something different, or may need to use different web servers or proxies from time to time, it’s better to have the cert renewal stuff separated.

    Also, for any provider that’s off the beaten path you have to build caddy yourself to include the right plugin and that’s just meh.

    Caddy’s fine if you only use one provider and only Caddy all the time but other than that no.











  • Yeah if you put it behind a reverse proxy you have lots of options. Basic auth would be the most straightforward but you can also do mTLS with a custom self-generated CA fairly easily. Then there’s OAuth but the setup is usually more involved than either of the above.

    Whatever you use you gotta have HTTPS working, that’s very important to keep it secured.