@james make sense! thanks for your thorough explanations
leemuljadi
Posts
-
VPS Security Hardening -
VPS Security Hardening@james thanks for your prompt response and sharing the references.
I have go through the documentations that you point out above. It's looking great as Cloudron has already setup a very robust security measure. And yes, it gives much more clarity now!
As per my understanding, the point 1 and 2 is recommended by the documentations and point 3 is pretty much done by Cloudron by internally setting up the IP table in the Cloud Firewall section. If you can confirm my understanding is correct?
I also appreciate for your openness in sharing your thoughts, just in case, I want to clarify regarding more damage and perhaps even create security risks mentioned below?
@james said in VPS Security Hardening:If you have to ask such a question, you will do more damage and perhaps even create security risks.
Was it pointing to because it's been done by Cloudron as in Cloud Firewall section, so we don't need to mess around with it or do you any other concern?
Thanks for your help.
-
VPS Security HardeningHi,
I plan to do security hardening on the VPS that host the Cloudron.
And if below points can affect Cloudron:
- Disable root login and use sudo user login
- Change the ssh port
- Disable all ports except the ssh port with firewall (or any specific port that needs to be open for Cloudron to run? I.e. does http and https need to be open as well?)
- Kernel hardening
Thanks in advance
-
HTTPS -
HTTPS@joseph
I put the main location atwww.example.com
and alias atexample.com
any difference of alias from redirection? -
HTTPS -
HTTPSHi,
Why I am getting this
not secure
indication while pointing the root domain to the wordpress?Is it related to SSL cert config? and how to fix this?
Thanks in advance
-
Backup Restore Error - route unavailable post activation@james thanks for your help, all good now
-
Backup Restore Error - route unavailable post activation@james ok thanks I managed get it work using dry-run. so when should I change the DNS record in the domain registrar if using dry-run?
Previously what I have done:
- set up a fresh Ubuntu 24 server and Cloudron by hand.
- visit the new IP Address in the browser.
- I used the backup config from 20 May 25, but then change the backup directory to the latest backup in 26 May 25 (this is the automatic backup, as I cannot open cloudron dashboard already) not using dry-run.
- removed the local DNS record in the /etc/hosts file of the deleted VPS
- changed the IP in the DNS record in the domain registrar to the new VPS IP
Where did I go wrong?
and there is a folder in my storage bucket for backup named snapshot, what is this for? what is the difference with backup?
-
Backup Restore Error - route unavailable post activation@james if I reinstall the server again and run using dry-run what IP address should I put in the /etc/hosts file?
-
Backup Restore Error - route unavailable post activation@james that's what I did before, I restore it to the new server and got that "route unavailable post activation".
isn't it because the cloudron backup is stuck with that previous IP address of the server that been deleted?
and can I still access cloudron dashboard now? as one of the step is creating backup and backup config, so how do I do this if I cant access the dashboard? -
Backup Restore Error - route unavailable post activation@james I did try out the dry-run, before but since it's was not working before and deleted the previous server (45.79.92.84) and spin another server (45.76.157.117), but the old server (67.219.110.179) still there. What should I do in this case?
-
Backup Restore Error - route unavailable post activation@james, thanks please keep me posted
-
Backup Restore Error - route unavailable post activation@james it worked now, here is the result:
Generating Cloudron Support stats...Done
Uploading information...DonePlease email the following link to support@cloudron.io : https://paste.cloudron.io/busovomeqe
-
Backup Restore Error - route unavailable post activation@james, yes, is there any installation needed for the command?
-
Backup Restore Error - route unavailable post activationThanks @james , I found this
zsh: command not found: cloudron-supportcan you suggest what is happening withs this issue and how to fix it?
-
Cloudron Backup for Moving to Another VPS
Hi all, got issues while restoring to a new VPS, anyone got this before? -
Backup Restore Error - route unavailable post activationFound this error while restoring to a new VPS:
anyone got this issue before? -
Cloudron Backup for Moving to Another VPS@james thanks for the thorough explanations. so I have done this part:
example: 53.82.33.6 my.awesome.it and adding in the /etc/hosts file
but probably still got that browser cache. So I already open it and stuck in this page when opening through the new server IP:
How do I manage this? -
Cloudron Backup for Moving to Another VPS@jdaviescoates yes I have updated /etc/hosts on my Mac local machine, but seems no effect. Could you please share what it suppose to look like? And after adding the new IP address and domain name run the dry-run it should connect the Cloudron to the new VPS IP right?