• 0 Posts
  • 2 Comments
Joined 4 months ago
cake
Cake day: April 8th, 2026

help-circle

  • If you have a UniFi gateway, you can enable region based firewall on your port forward ip. This then blocks most of the world (incoming) as a first step. Then like others suggest, a reverse proxy. I use Caddy built with the Maxmind geolocation plugin, and I also run fail2ban on my exposed service.

    I figure if you don’t need most of the world accessing your services, it is best to exclude them