George E. 🇺🇸♥🇺🇦🇵🇸🏳️🌈🏳️⚧️<p>Here's a <a href="https://bofh.social/tags/security" rel="nofollow noopener noreferrer" target="_blank">#security</a> <a href="https://bofh.social/tags/tip" rel="nofollow noopener noreferrer" target="_blank">#tip</a><span> for you...<br><br>If you host your own services (either at home or in the cloud) -- especially if you also use </span><a href="https://bofh.social/tags/CloudFlare" rel="nofollow noopener noreferrer" target="_blank">#CloudFlare</a> -- one of the easiest, simples, fastest, and effective things you can do is to enable <a href="https://bofh.social/tags/GeoBlocking" rel="nofollow noopener noreferrer" target="_blank">#GeoBlocking</a><span> for your domain.<br><br>What is geoblocking? It's where you only allow traffic to your service from locations that need it.<br><br>I'm not talking about a self-hosted fedi instance. I'm talking about things like </span><a href="https://bofh.social/tags/NextCloud" rel="nofollow noopener noreferrer" target="_blank">#NextCloud</a>, <a href="https://bofh.social/tags/VaultWarden" rel="nofollow noopener noreferrer" target="_blank">#VaultWarden</a><span>, self-hosted photo galleries, Plex servers, etc.<br><br>If you're in the UK, do you really want someone in Belarus or Myanmar being able to access your own private web service?<br><br>By enabling geo blocking for your domain you can restrict your services to only be accessible from those geographic regions that you authorize.<br><br>Say you're in the UK but you frequently vacation in Spain or Cyprus or Greece. Only enable traffic to your services from the UK, Spain, Cyprus, and Greece.<br><br>What you're doing is reducing your exposure to network-based threats and attacks.<br><br>Best of all it takes two seconds to setup.</span></p>