minus-squaredavad@lemmy.worldtoSelfhosted@lemmy.world•Docker securitylinkfedilinkEnglisharrow-up16·edit-29 days agoIn an enterprise setting, you shouldn’t trust the server firewall. You lock that down with your network equipment. Edit: sorry, I failed to read the whole post 🤦♂️. I don’t have a good answer for you. When I used docker in my homelab, I exposed services using labels and a traefik container similar to this: https://docs.docker.com/guides/traefik/#using-traefik-with-docker That doesn’t protect you from accidentally exposing ports, but it helps make it more obvious when it happens. linkfedilink
In an enterprise setting, you shouldn’t trust the server firewall. You lock that down with your network equipment.
Edit: sorry, I failed to read the whole post 🤦♂️. I don’t have a good answer for you. When I used docker in my homelab, I exposed services using labels and a traefik container similar to this: https://docs.docker.com/guides/traefik/#using-traefik-with-docker
That doesn’t protect you from accidentally exposing ports, but it helps make it more obvious when it happens.