#traefik

2026-02-03

I run my own small kubernetes cluster at Hetzner. And I want to self host a bunch of static web sites. I looked for a solution, simple, cloud native, low on resource usage. It must auto-update from Git (branch) like git[hub|lab] pages.

And there is not such a solution.

So I wrote my own: CRD, Operator, Syncer and a Helm chart to glue all together with Nginx and Traefik. Simplicity first, as admin publishing a page its one StaticSite custom resource with 4 or 5 values set, done.
It comes with tests/lint for Go and Helm code, full CI untegration (including image build, helm release and docs build with Hugo).

Welcome **kup6s-pages** to the light of the cloud. It is already live and publishes 2 sites. pages-docs.kup6s.com/
#Kubernetes #cloudnative #hosting #selfhosting #git #nginx #traefik #staticsite

2026-02-01

Как я выяснял, что провайдер блокирует входящий 443 порт, и что это означает для self-hosting и хомлабов

В какой-то момент я решил заняться self-hosting’ом дома: небольшой хомлаб, Proxmox, несколько сервисов за reverse proxy, HTTPS - всё максимально стандартно. Никакой экзотики: обычный домашний интернет, белый IP, проброс портов, nginx с TLS. Но на этапе публикации сервисов наружу выяснилось странное: входящий 443 порт просто не открывается , при том что 80 и другие порты работают.

habr.com/ru/articles/991520/

#Homelab #Блокировка_портов #Порт_443 #HTTPS #Белый_IP #Reverse_Proxy #Proxmox #NAT #Traefik #nmap

sublimer@あすてろいどん鯖管sublimer@mstdn.sublimer.me
2026-01-31

書きました!!

はてなブログに投稿しました
Traefikプラグインを作って公開する際の注意点と知見 - await wakeUp(); sublimer.hatenablog.com/entry/

#はてなブログ #traefik #golang #Kubernetes

Robert Nasarekrnsrk@fedihum.org
2026-01-29

1/6:
When using Traefik as a reverse proxy for Drupal (or any backend), you need to configure both sides to properly handle client IPs and forwarded headers.

#Traefik #Drupal #ReverseProxy #DevOps

LΞX/NØVΛ 🇪🇺lexinova@cyberplace.social
2026-01-28

Do #selfhosted #rss #relay exist.

As i centralize unavoidable US rss on my VPS, so i can easily plug them into TOR in anything happen to regain access.

I know i can do it with traefik, but i prefer an easy centralised way (if exist).

#rss #vps #us #tor #relay #selfhosted #centralized #traefik

2026-01-28

RE: social.jelliefrontier.net/@jes

Done! That went way smoother than I expected. The hardest part was interpreting Traefik’s dizzying documentation.

All reverse proxies and load balancers swapped out in place with no noticeable downtime. 💜

#HomeLab #Traefik #Networking

Screenshot of a Traefik dashboard showing a successful status on 84/84 routers and 45/45 services.
2026-01-27

I think it’s time I finally grew up and replaced my #NginxProxyManager with #Traefik.

#HomeLab #Networking

Andy Gajdosikagajdosi@witter.cz
2026-01-26

My VPS gets https certs automatically from Cloudflare, it was the most documented way for the Traefik rev proxy.

But I hate myself for depending on CF. Before I start searching, I would like to ask my fellow fediverzens...

Do you recommend any non-profit/ethical/community or at least Europe based alternative to CF & Acme chalanges compatible with Traefik?

#selfhost #vps #vpsfree #traefik #https

2026-01-26
If you’re looking to deploy #SNAC, the official repo contains example files for different scenarios, including a #DockerSwarm + #Traefik reverse proxy config I contributed that runs here.

If you’d like to test it without compiling and building your own image, the ready-made ones I keep for my own setup are always available at https://codeberg.org/daltux/-/packages/container/snac/versions

:snac: :traefik: :dockerSwarm:

#selfHosting #fediAdmin #FreeSoftware
2026-01-26
:snac: A quem tiver interesse em implantar o #SNAC pode ser útil conferir, no repositório oficial, o diretório com exemplos de alguns cenários diferentes, inclusive (contribuição minha) do esquema com o proxy reverso #Traefik em modo #DockerSwarm que utilizo aqui. :traefik: :dockerSwarm:

Além disso, se quiser testar sem compilar sua própria imagem de contêiner do SNAC, as que construo para executar aqui ficam sempre em https://codeberg.org/daltux/-/packages/container/snac/versions , caso queira aproveitar. :forgejo:

#SNAC #fediAdminBR #softwareLivre
2026-01-25

Hey, ich bin #neuhier (auf der Instanz).

Ich bin Admin (in Ausbildung) bei @adminforge.

Ich beschäftige mich mit:

#foss #opensource #linux #homelab #smarthome #datenschutz #privacy #security

Ich fummel rum mit:

#docker #podman #debian #ubuntu #fedora #ansible #crowdsec #homeassistant #nginx #caddy #traefik

Sonstiges:

#bookstack #ntfy #molly #grapheneos #grafana #unifi

2026-01-25

Middleware Manager v4.1.2 giờ hoạt động độc lập với Traefik và hỗ trợ mTLS gốc cho từng tài nguyên/router. Nâng cấp đáng chú ý bao gồm:
- Quản lý dịch vụ/middleware tinh vi, hiệu suất ổn định hơn
- Hỗ trợ plugin nâng cao như mTLS, Bandwidth Limiter
- Giao diện người dùng tối ưu hóa với Dark Mode
- Tích hợp sâu với API Traefik

#Traefik #MiddlewareManager #mTLS #SelfHosting #CôngNghệMới #TraefikPlugin #SecurityTech

reddit.com/r/selfhosted/commen

Schenkl | 🏳️‍🌈🦄schenklklopfer@chaos.social
2026-01-25

Spannendes Prinzip an der Stelle: ich fange die Requests schon am Frontend-Proxy ab, also am #Traefik.

Sollte der Angriff weitergehen, landen die Requests nicht mehr am Backend, aber ich analysiere sie weiterhin.
Schickt der Angreifer also weiterhin Kram, so steigt die Bannzeit ins unermessliche, ohne dass weitere Requests ans Backend durchgehen.

Ich sag ja; OverEngineered ;)

Schenkl | 🏳️‍🌈🦄schenklklopfer@chaos.social
2026-01-23

#Traefik mit über 1 Million Requests in 30 Minuten quälen

ODER

#MinIO zu #Garage migrieren

Wobei ich glaube den Traefik kratzt das am wenigsten^^
Aber jeder einzelne Request wird als fettes JSON auch gegen #Loki und eben diesen Garage Storage geloggt, also isses deutlich mehr Last, aber bisher ist alles geschmeidig :)

Screenshot eines Logvolumen aus Grafana, es werden über 1 Million Zeilen Log visualisiert
2026-01-22

🛠️ Mới: loglynx - công cụ phân tích log & dashboard giám sát lưu lượng cho dịch vụ tự host (Traefik, Pangolin, Caddy). Dễ cấu hình Docker‑compose, giúp bạn thấy ai đang truy cập domain. Mã nguồn mở, luôn chào đón đóng góp! #selfhosting #opensource #Traefik #Caddy #Pangolin #logparser #dev #tựchủ #mãnguồn

reddit.com/r/SideProject/comme

2026-01-21

Ich habe mal meinen crowdsec stack geupdated.

Der traefik-crowdsec-bouncer wurde durch as native crowdSec traefik plugin.

Das bringt einige vorteile mit sich, die du hier nachlesen kannst.

2tap2.be/crowdsec-plugin-appse

#homelab #traefik #crowdsec #waf #security #selfhost

If you are having issues with uploading big files with e.g. #nextcloud and especially your #traefik (v3.x) setup - than have a look at the respond, write, idle timeouts. They were set to 60s as defaults with traefik 3.

The timeouts can be increased or deactivated as follows in for example the traefik.yml:
```
entryPoints:
web:
address: ':80'
transport:
respondingTimeouts:
readTimeout: 0s
writeTimeout: 0s
idleTimeout: 0s
```

2026-01-18

Is there something about LEGO (Let's Encrypt library in Go) not working with Step CA's http challenge? #Traefik and the LEGO CLI client always stop at "Trying to solve HTTP-01", nothing happens anymore after that. 🤷‍♂️

Other apps (e.g. Proxmox) have no issue getting a certificate.

2026-01-18

Well, this turned out to be a #haproxy issue. Haproxy -- with proxy protocol enabled -- is on the path for both IPs -- but there's one difference, one of the hosts is on an AWS internal IP, so haproxy transmits this internal IP as destination, which is then unknown (and won't ever match) traefik's idea of IP address for the connection.

Otherwise I'm impressed that #traefik correctly decides the destination IP is what's needed for the cert matching where it's the only correct detail.

2026-01-18

More details - in a local capture, of course, both instances of the `s_client -servername` command produce a visible SNI. With `curl`, neither -- ok, maybe curl doesn't think IP addresses are worth to signal as #tls #tlssni. But then how does *one* of the IP addresses still work with #traefik to get the correct certificate to respond with???

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst