this post was submitted on 23 May 2026
181 points (96.9% liked)

Selfhosted

56957 readers
1330 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

Rules:

  1. Be civil: we're here to support and learn from one another. Insults won't be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it's not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don't duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

  7. No low-effort posts. This is subjective and will largely be determined by the community member reports.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

founded 3 years ago
MODERATORS
 

Assuming the user will not be connecting over vpn, but is both remote and non-technical, how would you expose Jellyfin to them securely?

you are viewing a single comment's thread
view the rest of the comments
[–] zaggynl@feddit.nl 9 points 1 day ago (3 children)

Ask them to visit https://ipv4.icanhazip.com/ and give you back the number, then whitelist in your webserver, as well as your LAN/VPN range, deny rest. Explain they can only reach jellyfin from their home internet. Repeat if they get 403 forbidden after they get a new WAN IP.

That or VPN like openziti, wireguard but gets more complicated.

[–] axx@slrpnk.net 4 points 8 hours ago

You really can't assume your visitors are going to have static IPs.

What happens when they visit from their phone? A friend's WiFi? Their home connection that has a regularly changing IP?

[–] floral_toxicity@lemmy.world 3 points 12 hours ago (1 children)
[–] EncryptKeeper@lemmy.world 1 points 3 hours ago

I like how if it’s IPv6 it just gives up

[–] hereiamagain@sh.itjust.works 4 points 15 hours ago

This is solid. I wonder if you could rig up a ddns somehow to keep it seamless?