

Honestly, I wouldn’t.
I only run it this way because a VPS had 0 WAF, and I’m terrified of opening ports. VPS is the well trodden ground, there’s tonnes of guides. Mine’s a hack job borne of necessity, it works though, and I am proud of what I cobbled together.
It was my first time solving my own problems. I had my meager skill set, a basic idea of what I wanted, some vague notion of how I was going to achieve it, and a thick forehead to smash against the problem till it gave way for me.
I am going to keep running it this way though. To access my server you need to HAVE a relay rPi, and you need to KNOW a password. That’s two authentication factors right there, just built in.



WAF has consistently held me down to earth. “What will that enable you to acheive that you can’t do already?” With a couple mini pcs and a rpi I’m good. I’d love shiny things, but beyond LLMs there’s not much it would enable me to achieve that I can’t already.
That, and other hobbies. I don’t want to be an amateur system admin during the summer. So all winter long, while I’m tinkering, I’m adding up how much it adds to my maintenance schedule.