Simple HTTPs for Docker! // Traefik Tutorial (updated)

Поділитися
Вставка
  • Опубліковано 2 лют 2025

КОМЕНТАРІ • 269

  • @maxlam79
    @maxlam79 6 днів тому +2

    Thank you for taking the effort in making this tutorial. Not many tech people could have both technical proficiency and the ability to explain things, making it tremendously easy to understand.

    • @christianlempa
      @christianlempa  6 днів тому

      Thank you so much for the kind words and the wonderful feedback! 🤗

  • @mithubopensourcelab482
    @mithubopensourcelab482 3 місяці тому +59

    Probably this is best video on Traefik.

  • @msnowman
    @msnowman 3 місяці тому +8

    This was fantastic. I tried to setup traefik a few months ago but didn't ever get it to work. It works now and I switched all my containers to it. Thank you!

  • @plasticpippo201
    @plasticpippo201 3 місяці тому +12

    this video about trafik is much better than the first one you made

  • @flwyd
    @flwyd 2 місяці тому +4

    Love your video, I was having a hard time understanding traefik via their docs, and now everything makes sense thanks to you.

    • @christianlempa
      @christianlempa  2 місяці тому +1

      Oh I'm glad you say this! Thank you :)

  • @ghangj
    @ghangj 3 місяці тому +1

    This is the best video on Traefik. I have Traefik running on Tailscale with nextDNS as my DNS. Loving the fact that i can deply Traefik in mins with all my configs.

  • @norbertogf
    @norbertogf 11 днів тому

    I was having trouble, routing was not working... Then I saw somewhere people saying cookies should be cleared. I did it and it started working!
    Thanks Christian for the great video!

    • @christianlempa
      @christianlempa  11 днів тому

      Awesome, glad you sorted it out ;) And thanks!

  • @cl_0ud470
    @cl_0ud470 2 місяці тому +1

    This solves my problem with reverse proxying to a bunch of services defined in a different docker compose. Thank you so much!

  • @romayojr
    @romayojr 3 місяці тому +5

    I was using NPM as my reverse proxy when I started my homelab journey over two years ago. I switched to Traefik because it challenged me to understand how it works. Now I have all my services running on it with Pihole as internal DNS and Cloudflare for external. I appreciate you updating your Traefik tutorial 🤝

    • @ManelRodero
      @ManelRodero 3 місяці тому +1

      Can you explain a little more about PiHole and Cloudflare? Can you give an example of a service and how you define it in each of them? Thanks.

    • @christianlempa
      @christianlempa  3 місяці тому

      Awesome! Yeah, NPM is honestly not a great project imo, it's a good idea to migrate :)

    • @gocygo01
      @gocygo01 3 місяці тому +1

      @@christianlempaWhat makes it a subpar option?

  • @SnorreSelmer
    @SnorreSelmer 3 місяці тому +1

    Fantastic work! Your "old" Traefik video got me up and running with Traefik in Docker, and I love it! Can't wait for your video on Traefik in k8s, since I'm transitioning to k8s in my homelab these days.

  • @xbelthesarx
    @xbelthesarx 3 місяці тому +10

    Fantastic video, Christian. Something I've discovered over time is that I can reduce the verbosity of my config by providing some sane defaults in my provider config to do things like specifying the docker network to use, as well as the ability to use custom rules when all of my services are deployed to a domain with a wildcard record like you outlined. I took the opportunity to write these up on my blog, and if it's okay, I can share it in the comments here for you and others to take advantage of.

    • @joshs2022
      @joshs2022 3 місяці тому +1

      I would be interested in this write up

    • @ManelRodero
      @ManelRodero 3 місяці тому

      @@joshs2022 Me too ;-)

    • @christianlempa
      @christianlempa  3 місяці тому +2

      Thanks for the kind words, feel free to share it ;)

    • @its_dhazardous
      @its_dhazardous 3 місяці тому

      I'd be interested as well

  • @maikelboom5764
    @maikelboom5764 3 місяці тому +6

    Thank you Christian, very helpful as always!

  • @ninja2807
    @ninja2807 10 днів тому

    Perfect video about traefik. Very clear and easy to follow. Thank you.

  • @JohnLovell-FTW
    @JohnLovell-FTW 3 місяці тому +1

    Great video! Lempa to Implementation (Lempamentation) is what I always say. No need to set the speed of the video to 1.5... CL changed his configuration to speak in 1.5 speed :)

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Haha thank you so much! Appreciate it :D

  • @Seba11PL
    @Seba11PL 3 місяці тому

    Great video and it was a pleasure to see updated traefik tutotial. Hope to see more advance tutorial about middlewares etc 😊

    • @christianlempa
      @christianlempa  3 місяці тому +2

      Great suggestions! I'll include a basic tutorial about middlewares in my video about authentik + traefik

  • @MichaelRinghusGertz
    @MichaelRinghusGertz 3 місяці тому

    Thanks for a great video. I have been using Traefik 2.9 untill now, and have for some time now, wanted to move to latest version. I haven't had the time to look into it. This video, made me switch from 2.9 to 3.1 in about on hour. Thanks again.

  • @davidharris6632
    @davidharris6632 Місяць тому

    Thank you so much for creating such a detailed and informative video! I very much appreciate the attention to detail and your teaching style. Subscribed!

  • @DigiDoc101
    @DigiDoc101 3 місяці тому +6

    Perfect timing. Thank you.

  • @BenjaminBenStein
    @BenjaminBenStein Місяць тому +1

    Best Traefik Video ever

  • @jeucedahn
    @jeucedahn 3 місяці тому

    I always enjoy watching your amazing tutorials. Thanks for sharing.

  • @martineichhorn1254
    @martineichhorn1254 16 днів тому

    Thank you very much for this easy-to-understand video. Really great content that makes me want more.

    • @christianlempa
      @christianlempa  15 днів тому

      Thank you so much 😊 hope you’ll find something cool on my channel

  • @hectorrios1432
    @hectorrios1432 2 місяці тому

    Holy smokes! It works! Thank you so much for this great tutorial.

  • @mohamedhabas7391
    @mohamedhabas7391 13 днів тому

    Thank you very much for this fantastic walkthrough.

  • @Ke_Mis
    @Ke_Mis 24 дні тому

    Amazing Christian!

  •  Місяць тому

    Crystal clear 🤘🏻❤

  • @scockman
    @scockman 11 днів тому

    👏- thank you for a awesome tutorial!

  • @walideshtiwi6303
    @walideshtiwi6303 3 місяці тому

    thank you i love the way you explain everything in details

  • @larsskage5584
    @larsskage5584 19 днів тому

    Thank you Christian!
    Your videos are always really great.
    Have you looked into using a single-node docker swarm to make use of the secrets and other swarm features?

    • @christianlempa
      @christianlempa  18 днів тому

      Thank you! :) Not yet, but it's on my list

  • @TjarkZiehm-f4c
    @TjarkZiehm-f4c 23 дні тому

    amazing video and way to explain !

  • @BrianPhillipsSKS
    @BrianPhillipsSKS 3 місяці тому +1

    I'm for that SWAG life. It's so simple and comes integrated with Crowdsec and Fail2Ban

  • @yeastdonkey846
    @yeastdonkey846 2 місяці тому

    Great video! Would love a follow-up that goes through more advanced configuration (such as using Cloudflare origin certs) and label usage.

    • @christianlempa
      @christianlempa  2 місяці тому +1

      Thank you! I'm planning to add these config steps into other videos where it's needed. For example, if we discuss authentik using middlewares and outposts, stay tuned for this topic coming out next year :)

    • @yeastdonkey846
      @yeastdonkey846 2 місяці тому

      @ awesome, keep up the great work!!

  • @S0m3th1ngN3rdy
    @S0m3th1ngN3rdy 6 днів тому

    Thank you for this! Very clear and explained well.
    I would love if you could make a video about adding plugins to traefik. Especially configuring Crowdsec. Thank you!

    • @christianlempa
      @christianlempa  5 днів тому +1

      Thanks! I think that's a great idea, however I have so many other projects, maybe somewhere in Q3-4 this year.

  • @テパチェ
    @テパチェ 2 місяці тому

    Amazing tutorial, easy to follow. Thank you for sharing.

  • @poet8236
    @poet8236 14 днів тому

    Super Tutorial, vielen lieben Dank!

  • @etherxi
    @etherxi 2 місяці тому

    Thank you for this awesome and easy tutorial. I have just learned from this video after searching more on youtube and google. I am able to setup multiple domain in the same vps using docker. It would be better if you make a load balancer video with docker and traefik

    • @christianlempa
      @christianlempa  2 місяці тому

      Glad it was helpful! What would you like to see in a future video?

    • @etherxi
      @etherxi 2 місяці тому

      @christianlempa thank you for the reply. I would love to learn about setting up the load balancer for multiple vps using traefik and docker.

  • @LazyPanda-p9n
    @LazyPanda-p9n 3 місяці тому

    You sir are a legend! Thank you for this brilliant tutorial. I finally learnt what Traefik is and most importantly, got it up and running.. do you have a video on how to setup Authelia with Traefik? that's next for me :)

    • @christianlempa
      @christianlempa  3 місяці тому +2

      Thank you so much!! :) No, there's no Authelia video planned, but I've done a video about authentik, in future videos, I will expand the Traefik + Authentik setup.

    • @LazyPanda-p9n
      @LazyPanda-p9n 3 місяці тому

      @christianlempa that would be wonderful... Thanks for your reply, and will wait for the video

  • @mateuszkozera9443
    @mateuszkozera9443 2 місяці тому

    Thanks Christian!

  • @snopz
    @snopz Місяць тому +1

    This is fantastic! I finally understood Traefik 😅.
    I do have a question, though: In the video, you showed how to configure the Nginx server which is using port 80 for its web interface. How would we set it up for applications that use other ports for their web interface?
    Thank you for your hard work!

    • @christianlempa
      @christianlempa  Місяць тому

      Awesome! You have to modify the labels for the service objects, e.g. traefik.http.services.service.loadbalancer.server.port=3000

  • @drbyte2009
    @drbyte2009 3 місяці тому

    Great and clear video on traefik !! Thnx

  • @ManelRodero
    @ManelRodero 3 місяці тому +2

    As always, a very interesting video.
    Now, I would like you to use configurations that are valid in production even if it is for a HomeLab. For example, the UI exposure of port 8080 should be protected. How would this be done?
    Another question you have not addressed is the number of Traefik you have. Do you install one on each server? If so, how do you route to the Dockers that are on other machines? (and that are obviously not on the same network).
    Or how do you route to non-Docker applications?
    I hope you can explain this in the comments or in a new video.
    Thanks for everything you post.

    • @christianlempa
      @christianlempa  3 місяці тому +2

      Protecting the UI is a topic for another video. :) Regarding the other questions, I deploy Traefik on each server and I don't route any external services, yet.

  • @miguelRibeiroAP
    @miguelRibeiroAP 6 днів тому

    Hey hey! Just come across your video and its very helpful! Looking forward to see your past videos and what you're bringing next!
    Just a question though: at 23:17 and 35:01 , where the nginx compose file shows, shouldn't the port be declared? I tried exposing my containers without setting the port but I always get an error in traefik the ports aren't exposed. Why is that?

    • @christianlempa
      @christianlempa  6 днів тому

      Traefik will recognize the port by itself. However, sometimes containers use multiple ports for different things, and in this case, you have to define which port the Traefik router should use.
      You can do this by changing the service object, here is a quick example:
      github.com/ChristianLempa/boilerplates/blob/main/docker-compose/portainer/compose.yaml

    • @miguelRibeiroAP
      @miguelRibeiroAP 6 днів тому

      @ thank you for coming back! Yeah, I got that later. Not sure why this is the case for Kopia, the Dockerfile I found for it doesn’t seem to have the EXPOSE directive. Maybe that’s the case.
      Anyway, it’s fixed! Thank you

    • @christianlempa
      @christianlempa  6 днів тому +1

      @@miguelRibeiroAP that makes sense, I think it detects it by the expose settings in the container which are usually defined in the Dockerfile. Glad you found it! :)

  • @holygod8440
    @holygod8440 2 місяці тому

    just awesome tutorial

  • @gacjezv
    @gacjezv 3 місяці тому +2

    excellent as always Christian. Question: What if I have multiple servers running docker containers? Do I run a traefik server per server or do I have one and the containers are managed across the network from a single server?
    Thanks

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Thank you so much! :) I run traefik on each server, since I don't have a better way to transfer the requests from one server to another. Maybe a Docker Swarm setup would be better in this scenario, but that's a topic I might have to look into at some point.

  • @scottmielke4071
    @scottmielke4071 3 місяці тому

    This is incredible

  • @SB-qm5wg
    @SB-qm5wg 2 місяці тому

    great tutorial.

  • @JorgeRamirez01
    @JorgeRamirez01 2 місяці тому

    What a journey, but thanks to your video I was able to configure traefik, portainer and pihole... so far, so good with my new adventure setting up my home lab. Thanks!

  • @lele-tz1uz
    @lele-tz1uz 3 місяці тому

    love your videos, thanks very helpfull!

  • @Nnyan
    @Nnyan Місяць тому +1

    I wanted to try Traefik again but while I can get the container to run (first fixed the port 80 issue, then traefik.yaml being a directory, user errors) but when I run it I don't see any messages like in the video, no web UI and when I look at portainer there is nothing in the logs. I restarted and I did get something in the log: command traefik error: yaml: line 2: mapping values are not allowed in this context

  •  3 місяці тому

    Danke für das Video. Habe es nun verstanden denk ich.

  • @mrbend
    @mrbend 2 місяці тому

    Useful, concise. Especially with the boilerplates. Would it be possible you do a video about wildcard certs in traefik with cloudflare?
    You already saved me so much research time with this, and I am really grateful!

  • @magnusnelenius649
    @magnusnelenius649 3 місяці тому +1

    Very nice! You have a video some months ago showing how to use selfhosted netbird with quick start guide but it would be very interesting putting it behind Traefik and use Authentik instead of Zitadel. Maybe a video on that?

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Thank you, great suggestions, but currently I don't have time for it, maybe I need to follow-up on it next year

    • @magnusnelenius649
      @magnusnelenius649 3 місяці тому

      @@christianlempa That would be nice!

  • @jeskamstrup
    @jeskamstrup 3 місяці тому +1

    The Lets Encrypt certificates are usually valid for 90 days. Does Traefik automatically renew the expired certificates that it has created as needed?

    • @sanvi4236
      @sanvi4236 3 місяці тому

      as of ~2 months ago mine was able to renew them automatically without any extra config. i think letsencrypt also sent an email warning me that they were near expiry so i could keep an eye on it.

    • @christianlempa
      @christianlempa  3 місяці тому

      yep indeed! it does it automatic

  • @mra2202
    @mra2202 3 місяці тому

    Would really love to see the video on deploying and configuring Traefik with TLS certs on Kubernetes.

    • @christianlempa
      @christianlempa  3 місяці тому +1

      That's coming soon ;)

    • @mra2202
      @mra2202 3 місяці тому

      @christianlempa Will you be using an Ingress or IngressRoute? I prefer IngressRoute as it's easier to configure.

  • @MelroyvandenBerg
    @MelroyvandenBerg 2 місяці тому +17

    No. No cloudflare. The whole world and internet is depending already too much on the centralized cloudflare services. Just no.

    • @JeronimoStilton14
      @JeronimoStilton14 23 дні тому

      Use duckdns

    • @LukanRocks
      @LukanRocks 20 днів тому +1

      Do you have any recommendations for alternatives? My domains are registered there

    • @MelroyvandenBerg
      @MelroyvandenBerg 10 днів тому

      @ Well I host everything myself. On my own Proxmox server. Within a VM, using Nginx, etc., etc. Soon I will scale it up, an a Ceph cluster. I already have a OPNsense firewall in between. And I'm busy developing my own DDoS protection layer written in Go.

    • @WeiserMaster3
      @WeiserMaster3 9 днів тому

      ​@@MelroyvandenBergare you even independent when you don't even make your own silicon smh

  • @kareemschultz
    @kareemschultz 3 місяці тому +1

    I’ve been using nginx proxy manager for years, but Traefik is very tempting. I just wish it had a nice GUI to make changes instead of editing a bunch of config files.

    • @christianlempa
      @christianlempa  3 місяці тому +1

      You just have to get used to the config labels, but if you got your templates I think it's even much faster and easier to configure than in a UI.

  • @BrantScalan
    @BrantScalan 3 місяці тому

    Do you have time to update your DNS Bind9 video? Its a bit old. When it runs there are tons of errors around rndc and keys and config to manage the platform as well as maybe include some zone transfer and other basic settings that would be required to make sure DNS is available? Thank you for the great content.

    • @christianlempa
      @christianlempa  2 місяці тому

      Thank you! I don't think the content is outdated, maybe there's something wrong with your config, perhaps we should follow up on discord

  • @harsh90731
    @harsh90731 Місяць тому +1

    Please give us the link of the source code, your description link is not working.

  • @NikConwell
    @NikConwell 3 місяці тому

    Great video, thanks. Any reason why you didn't use the HTTP challenge instead? I was thinking that would be simpler?

    • @christianlempa
      @christianlempa  3 місяці тому +2

      The HTTP challenge requires an external connection from the letsencrypt server to traefik

  • @TotteLundgrenVLOG
    @TotteLundgrenVLOG Місяць тому

    Thinking about giving this a go. Currently running my proxies through CF Tunnels, but gives some issues sometimes with responses.

  • @tstill1988
    @tstill1988 21 день тому

    how does this compare with NGINX Proxy Manager? Im running that in HomeAssistant at the moment but was thinking to move to my docker host. Im already familiar with it, but wasnt sure if this is able to do more or do it better?

  • @praetorxyn
    @praetorxyn 2 місяці тому

    One thing that's probably worth at least considering is that if you use CLI arguments for the static config in the Docker Compose, this lets you pull from environment variables (or a .env file), Docker secrets, etc., and I am not sure using the traefik.yml can do this. But I am not that far yet, I am in the planning phase. Hell, you might say I'm in the pre-planning phase, as I've had Proxmox installed on a MS-01 for 5-6 months and still haven't decided what distribution I want to use for my Docker host :D

    • @christianlempa
      @christianlempa  2 місяці тому

      Hm, you're right, that's an advantage! Just the formatting and size of the CLI arguments are a bit annoying, so I still prefer the config file.

  • @hareesh2581
    @hareesh2581 8 днів тому

    @christian Lempa , Do you know if the host VM where you are running docker needs to be joined to the a local AD server?
    I followed your steps , however I cant access my test app via FQDN:port

    • @christianlempa
      @christianlempa  7 днів тому

      I'm not sure how this should be related to AD?

  • @SanderCokart
    @SanderCokart 13 днів тому

    great video! but why do all people still use the old compose style xD version declaration in compose files was deprecated long ago lol.

  • @daro_
    @daro_ 2 місяці тому

    What do you use for slides & presentation ?

    • @christianlempa
      @christianlempa  2 місяці тому +1

      I'm using Excalidraw+ which has a presentation mode

    • @daro_
      @daro_ 2 місяці тому

      @@christianlempa I didn't know ExcaliDraw has a "+" version :D For a long time I was wondering how to use the frames etc :D Thanks

  • @miecz8316
    @miecz8316 2 місяці тому

    Id love to see a guide on setting up a separate mac address and local ip for every container

    • @christianlempa
      @christianlempa  2 місяці тому +1

      There's a video: ua-cam.com/video/5grbXvV_DSk/v-deo.html

    • @miecz8316
      @miecz8316 2 місяці тому

      @@christianlempa Thank you very much, just hope its not outdated at this point, but definitely gonna watch it.

  • @martinx2922
    @martinx2922 3 місяці тому +1

    Why do we need a backend in your boilerplate setup if the frontend already handles the requests directly? And why do you include a backend in the setup without explaining its purpose?

    • @christianlempa
      @christianlempa  3 місяці тому

      I need to update the template, gonna do it the next days ;)

  • @dariuszbensch
    @dariuszbensch 6 днів тому

    When we can expect 2nd part with Kubernetes ?

    • @christianlempa
      @christianlempa  6 днів тому +1

      It's already there: ua-cam.com/video/vJweuU6Qrgo/v-deo.html

    • @dariuszbensch
      @dariuszbensch 6 днів тому

      @@christianlempa Thank you :)

  • @mithubopensourcelab482
    @mithubopensourcelab482 3 місяці тому +23

    Caddy looks very promising as compared to Traefik.

    • @jameslucas583
      @jameslucas583 3 місяці тому

      Traefik and Caddy are both excellent and have pros and cons for different situations. Check out Zaroxy as well which is a new kid on the block that I think will be a good option for a lot of home-labbers

    • @danko95bgd
      @danko95bgd 3 місяці тому

      Only annoying thing is that they don't have a k8s gateway api provider unlike traefik. There is something on github but its probably some beta

    • @lucanori97
      @lucanori97 3 місяці тому +1

      Out of curiosity, why is it promising compared to traefik? (Asking for a friend which is trying to implement traefik in every single stack 😅)

    • @playeronthebeat
      @playeronthebeat 3 місяці тому +3

      I do like Zoraxy! :D
      Currently, for someone like me the best option.
      Maybe I'll give Traefik another try after this video.

    • @MelroyvandenBerg
      @MelroyvandenBerg 2 місяці тому

      Caddy is too slow.

  • @nivaddoniv8363
    @nivaddoniv8363 2 місяці тому

    I'm actually just starting out and was stuck one part, i run the lxc proxmox container and the .env file that doesn't seem to work does it for just yml configuration? So how do you feed the token properly?

  • @Oakey76uk
    @Oakey76uk 3 місяці тому

    Yet another fantastic video that turns something complicated into something easy to understand.
    Just one question that you didn't cover and that is how do you add a docker host on another machine?
    I have the docker host that I have installed Traefik on and another that I have docker-proxy on. How would I add that to providers as everything I try prevents Traefik from starting.

    • @Oakey76uk
      @Oakey76uk 3 місяці тому

      Just as an update. I have been unable to find a way directly in traefik but used a docker container called traefik-kop, which solved the issue, and I now have two docker machines using one traefik instance

    • @christianlempa
      @christianlempa  3 місяці тому

      Thank you! Glad you could solve the issue :)

  • @mostrealtutu
    @mostrealtutu 3 місяці тому

    re the ad: the world really needs more scrapers -,-

  • @mauriziogiorgino3450
    @mauriziogiorgino3450 2 місяці тому

    Hi! this work wonderfully but i want to use traefik (on my OMV VM) on another docker container on my proxmox server, what would be the best way to achieve that? a docker swarm?

    • @christianlempa
      @christianlempa  2 місяці тому +1

      There are multiple ways to do this, you could deploy multiple instances of traefik, use external host configs in traefik, or docker swarm would also be a good idea. It depends a bit on your setup and what you want to achieve, why not join our community on discord and raise it as a question.

    • @mauriziogiorgino3450
      @mauriziogiorgino3450 2 місяці тому

      @@christianlempa Thanks for the answer, didn't knew you have a discord server, doing a jump there right now!

  • @darknessblades
    @darknessblades 2 місяці тому

    Do you know if there is any way to use wireguard as a VPN tunnel for something like home-assistant
    with wireguard running in proxmox, and home-assistant on its own PC/RPI
    Where only approved devices can access the HA-server from outside the network trough wireguard.

  • @kevinhu196
    @kevinhu196 3 місяці тому

    I'm planning on deploying Traefik on Proxmox, how would you handle traefik labels for between LXC containers, since people say LXC can separate services and also some services like Jellyfin requires a LXC for iGPU

    • @christianlempa
      @christianlempa  3 місяці тому

      I'm not using LXC, so unfortunately I can't be sure, but I don't think LXC has labels. It's really just for Docker (which is the reason why I don't use LXC)

    • @kevinhu196
      @kevinhu196 3 місяці тому

      @@christianlempa oh thank you helping. I guess only way to take advantage of traefik label make it more convenient is using a single VM for Docker related services and put Traefik there.

  • @andrelademannvergissberlin8263
    @andrelademannvergissberlin8263 3 місяці тому

    A link to your mentioned boilerplate repository in the description would be nice

  • @DynamicalisBlue
    @DynamicalisBlue 8 днів тому

    Why would I ever allow my services to use the insecure web router (80)?
    Shouldn't everything exclusively use HTTPS?

    • @christianlempa
      @christianlempa  7 днів тому

      Yes, that's the reason why we're using Traefik

  • @magran17
    @magran17 3 місяці тому

    Thanks so much.

  • @mjsmith1242
    @mjsmith1242 3 місяці тому

    Wow wollte dir gerade schreiben Christian weil du mal ein Video über Kubernetes gemachthattest für TrueNas Scale. Da diese nun bei Docker sind kann ich das Video als passende Anleitung nehmen oder fehlt etwasspezifisches?

    • @mjsmith1242
      @mjsmith1242 3 місяці тому

      Kein edit unter iOS hm. Mir gings dabei nebst reverse proxy auch etwas um den Vergleich mit dem cloudflare DNS Tunnel Proxy Teil. Wollte nur Nextcloud Publisher und überlege nun ob Proxy oder einfach den Tunnel zu nehmen. Oder macht eine Kombination Sinn?

    • @mjsmith1242
      @mjsmith1242 3 місяці тому

      Damit dürfte es nun soweit klar sein =). Muss nur schauen ob ich ein docker Manager nehme oder truenas intern irgendwas gebastelt hat. Acme läuft ja schon in truenas aber ja so würde es mir schon besser gefallen mit configs.

  • @JGNiDK
    @JGNiDK 3 місяці тому +1

    Any reason for Traefik if you’re already having NGINX??

    • @christianlempa
      @christianlempa  3 місяці тому

      Nginx is just an example, this could be any other application, also non HTTP and TCP/UDP

  • @RiffyDevine
    @RiffyDevine 3 місяці тому

    What about using it across machines, did you ever find a way besides traefik kop?

  • @ryanbuzar5392
    @ryanbuzar5392 3 місяці тому

    Great video @Christian Lempa! Thanks for the refreshed content! This was helpful!
    I've been banging my head against the keyboard for the last week or so getting Wazuh to be accessible to my domain behind Traefik. Does anyone have any insight? Thanks!

  • @justwantedtoreply
    @justwantedtoreply 14 днів тому

    I just can't get it to run, i keep getting error=command traefik error: read /etc/traefik/traefik.yaml: is a directory no clue where to look, i took over the same information in the guide except the ports.

    • @christianlempa
      @christianlempa  12 днів тому +1

      Take the compose project down, remove the directory, create the file first, before you start the container!

    • @justwantedtoreply
      @justwantedtoreply 12 днів тому

      @@christianlempa After hours of faffing about i gave up. Tried nginx proxy manager which is running now... however it doesn't like some things which i haven't figured out either. This is all a big mystery to me.
      Running into issues like 'to many redirects' on my nextcloud server. When changing the forwarding back to 80/443 on that IP it just works again. Through wireguard vpn it works fine also.

  • @Dr.Dkbt_JD-PhD-MD-MBA
    @Dr.Dkbt_JD-PhD-MD-MBA Місяць тому

    Would you have time to do the same video but for Nginx Proxy Manager? Thanks and you videos are super helpful, very well done, and highly informative!

    • @christianlempa
      @christianlempa  Місяць тому +1

      thank you :) I avoid using nginx proxy manager, because I don't believe it's a good project. I've made one video at some point explaining it: ua-cam.com/video/uaixCKTaqY0/v-deo.htmlsi=KSSPWqEn_WpX3bQw

    • @Dr.Dkbt_JD-PhD-MD-MBA
      @Dr.Dkbt_JD-PhD-MD-MBA Місяць тому

      @christianlempa oh wow I guess I missed this video. I never realized NPM had that many issues and the dev team was so small. I just checked and they currently have 718 open bugs. Thanks again for another insightful video!

    • @christianlempa
      @christianlempa  Місяць тому +1

      @ no problem, thanks for watching :)

  • @TheEmperorXavier
    @TheEmperorXavier 3 місяці тому

    Thank you soo much for this video, it really helped. Query, do you play that white piano on the back ground. If yes we need to see a video of you doing so please. Putting in a special request

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Thank you so much! :D Maybe I'm gonna record something in the coming weeks and put it on social media or maybe a second private channel... but I can't promise, long time I didn't play

  • @borasmax
    @borasmax 2 місяці тому

    hello is there any way to expose my home server to the world. assuming that my Internet provider blocks changing ports in the router, the IP address is not public and dynamic and I cannot connect an external router. and buying a domain costs a bit

  • @wstrater
    @wstrater 3 місяці тому

    I have definitely in the party of not using the version of Traefik automatically installed by K3S but now I am wondering why!
    Have you explored using installed version. It is installed using a Helm Custom Resource and dropping a file in `/var/lib/rancher/k3s/server/manifests` that contains a couple of HelmChart resources. You should be able to update that file and have it automatically updated with your changes.
    What is the real benefit of removing all of the resources installed automatically by Helm and then reinstalling a custom version? It has to be more than just changing namespace.

    • @christianlempa
      @christianlempa  3 місяці тому

      I like to manage the config using the Helm Values instead of modifications I have to put into the configmap

    • @wstrater
      @wstrater 3 місяці тому

      @ You can drop a file with a HelmChartConfig in the same directory and it overrides the values in the HelmChart.

  • @matemeszaros4127
    @matemeszaros4127 Місяць тому

    I like your videos very helpful. Maybe you can show traefik with multi-node setup

    • @christianlempa
      @christianlempa  Місяць тому

      Thank you! Currently, I'm using for each server a separate Traefik instance, but maybe I'm going to rethink that setup next year with using Docker Swarm... we'll see ;)

  • @Glitch_860
    @Glitch_860 3 місяці тому

    So If I am running game servers that use UDP and or TCP ports. I should use routes for traefik to prevent breaking connectivity once traefik is online ?

    • @christianlempa
      @christianlempa  3 місяці тому

      You can use UDP or TCP routers too!

    • @lyth1um
      @lyth1um 3 місяці тому

      would be interesting if this can replace wireguard for this usecase.

  • @playeronthebeat
    @playeronthebeat 3 місяці тому

    Hi!
    I haven't watched the video, yet, but skipped over the timeline/chapters.
    Are you talking about redirecting requests from one traefik to another to a service, too, or would you like to make a tutorial for that?
    For example, I, currently, am running a immich in my homelab. However, I'd like to expose /share/* to the outside. Since you usually do not have a stable IP address, I thought of going through a VPS of mine which. So, any request to /share/* coming from the outside will be directed at my VPS and from there, traefik should route it via my VPN connection to my local traefik which will forward it to immich itself.
    I have never really gotten it to work with traefik. Can you do a tutorial like that? Do you have any other ideas (except for Cloudflare tunnels) regarding that? Any clues on what might have gone wrong? :D

    • @christianlempa
      @christianlempa  3 місяці тому +1

      That's not part of this video, maybe I'll include it in another.

    • @playeronthebeat
      @playeronthebeat 3 місяці тому

      @christianlempa that'd be so cool!
      It might be a 'niche' case, but I think a lot of people could benefit from something like this as it secures services and your home network down, and you can use static IPs (if you don't have one)!

  • @erikslevin
    @erikslevin 3 місяці тому

    Wie heißt die Font/schriftart für deine Visualisierungen Meister? Sieht jedesmal sehr anschaulich aus!

    • @christianlempa
      @christianlempa  3 місяці тому

      Das ist die Standardschrift von Excalidraw, super tool! :)

    • @erikslevin
      @erikslevin 3 місяці тому

      @christianlempa alleine das Tool ist ein kurzes Video wert 😅 direkt als Favorit gespeichert 😁

    • @christianlempa
      @christianlempa  3 місяці тому +1

      @ Danke! Hatte ich mal überlegt aber ich werde wahrscheinlich mal ein video generell über Tools machen die ich oft verwende

  • @Builder4craft
    @Builder4craft 3 дні тому

    I still can't wrap my head around any reverse proxy besides NPM.
    Or maybe it's me, my use case is a bit odd (1:1 subdomains for every container I want to reverse proxy)

  • @MelroyvandenBerg
    @MelroyvandenBerg 2 місяці тому +1

    You do know that you can define and specify the docker network directly into the docker compose file. Right? 😮

    • @MelroyvandenBerg
      @MelroyvandenBerg 2 місяці тому

      So no need to create it manually via cli..

  • @atrocitus777
    @atrocitus777 3 місяці тому

    would love a video on openziti as an alternative to something like twingate.

    • @christianlempa
      @christianlempa  3 місяці тому +1

      Maybe at some point, currently I'm happy with Twingate.

  • @jovyalchoussi4268
    @jovyalchoussi4268 3 місяці тому

    Thanks for video Christian !! Please can you make a video to handle /static/, /media/ files for custom website (like a website on django) with nginx proxy manager, thanks !!

    • @christianlempa
      @christianlempa  2 місяці тому

      You're welcome! :) I'm not using nginx proxy manager anymore, I think you can use traefik for any static website as well.

    • @jovyalchoussi4268
      @jovyalchoussi4268 2 місяці тому

      @@christianlempa Ok thank you

  • @mattiavadala7870
    @mattiavadala7870 3 місяці тому

    I really need to manage TLS for local webapp, I can´t understand why the majority of reverse proxy doesn't support that. I just found Caddy useful for that kind of scenario, but I prefer something with a nice UI. :(

    • @newaira333
      @newaira333 3 місяці тому

      Nginx Proxy Manager is probably as good as it gets if you want to manage the proxy via a decent GUI

    • @mattiavadala7870
      @mattiavadala7870 3 місяці тому

      @newaira333 i know it but he doesn't handle local TLS. I don't expose service on internet so I don't want to have a internet domain just for having cert from let's encrypt. Caddy handle this very well but I don't like the way to use it.

    • @68misty50
      @68misty50 3 місяці тому

      @@mattiavadala7870 You can self-host your certificate authority / manager with "Smallstep". And for the domain name, self-host your DNS.
      If this information can help you

    • @christianlempa
      @christianlempa  3 місяці тому

      @68misty50 is absolutely right! hopefully I have time next year to finally get smallstep up and running ;)

  • @mal-avcisi9783
    @mal-avcisi9783 3 місяці тому +1

    probably the most chaotic video on traefik.

  • @RocketLR
    @RocketLR 2 місяці тому

    Traefik is great when it works but tbh.. i've had to tinker so much to get it to work with my sonarr and radarr containers..
    Not to mention i still havent gotten my own react applications to work behind traefik.

  • @marianarlt
    @marianarlt 3 місяці тому +1

    Can somebody please explain to me why we need web applications now to do what a few lines of config file of the major webservers have been doing for decades? What timeline is this? This is just more stuff to maintain on top of all the stuff thats going on...WHY? Just expose a port, point reverse proxy to port, be done. Load balancing is also not a new concept. Am I getting old here? Am I being naive? Honestly idk why we need all of this...
    Is this simply a new webserver/balancer/proxy contender with a GUI and tons of buzz words?

    • @stephenzedalis4012
      @stephenzedalis4012 3 місяці тому

      Most webservers won't have the smarts to go out and get the SSL certificate using DNS challenge, nor intelligently parse the backend docker or kubernetes. This is a smart layer 7 protocol router/reverse proxy that is separate from whatever web server or application you want to use. You could use this to frontend the web gui of IoT applications where you may not have control of the web server. Nginx web proxy can do similar, or Caddy, or HAProxy. Think of this as a single proxy for a farm of servers or applications. Doing it in webserver typically does it for that single server and you would have to configure it for every server you had in play. This can be in front of apache and nginx at the same time if both happen to be in separate containers or separate servers/nodes.

    • @christianlempa
      @christianlempa  3 місяці тому

      I can't say anything about getting old 😆, but just a few ideas why this is useful. Imagine you don't have to worry about managing config lines on your web server / proxy, or use additional services to manage TLS certificates. You can all do it with just 4 lines in your docker-compose files, which you use for application deployment. Also, when it comes to Kubernetes, it has so many advantages.

  • @trrjecto4459
    @trrjecto4459 3 місяці тому

    Haven't seen it yet, but i always have some issues with traefik 😂. There for i even started to use/learn iptable rules, virtual network interfaces, certbot and ufw. At the end its the same as Treafik

    • @christianlempa
      @christianlempa  3 місяці тому

      Well, that's not true. What you use is a firewall solution working on the TCP/IP layer, but Traefik is a reverse proxy, meaning it hooks into the HTTP requests, can do some modifications to the requests and forward it.

  • @crow3291
    @crow3291 3 місяці тому +1

    What's the advantage of Traefik over NPM for reverse proxying?

    • @christianlempa
      @christianlempa  3 місяці тому +2

      I've made a video on NPM, in my opinion, it's not a reliable project.

    • @crow3291
      @crow3291 3 місяці тому +1

      @@christianlempa Thanks! I love how you just manage the containers using compose, command line and VS Code connected through SSH. Do you still use Portainer or something like that?