‹ BackHN Continuity

Thread

Self-hosted HTTP tunnels with SSH and Nginx

140 points · 32 comments · renehsz

  1. gonzalohm · · focus · HN ↗
    I don't have the code at hand, but I think it's better to just have a nginx server that only serves content if the browser has a specific certificate installed. That way you generate a key pair, share the public key with anyone that you want to share the content with and that's it.

    Downside is that some browsers don't handle the certificates properly (especially on phones)

    1. jagged-chisel · · focus · HN ↗
      An HTPS server always hands out its public key. Do you mean client secrets or something?
      1. nvme0n1p1 · · focus · HN ↗
        Sounds like he&#x27;s talking about mTLS&#x2F;client certificates. <a href="https:&#x2F;&#x2F;blog.mozilla.org&#x2F;security&#x2F;2021&#x2F;07&#x2F;28&#x2F;making-client-certificates-available-by-default-in-firefox-90&#x2F;" rel="nofollow">https:&#x2F;&#x2F;blog.mozilla.org&#x2F;security&#x2F;2021&#x2F;07&#x2F;28&#x2F;making-client-c...
Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.