• Login
  • Register
  • Login Register
    Login
    Username/Email:
    Password:
    Or login with a social network below
  • Forum
  • Website
  • GitHub
  • Status
  • Translation
  • Features
  • Team
  • Rules
  • Help
  • Feeds
User Links
  • Login
  • Register
  • Login Register
    Login
    Username/Email:
    Password:
    Or login with a social network below

    Useful Links Forum Website GitHub Status Translation Features Team Rules Help Feeds
    Jellyfin Forum Support Troubleshooting Networking & Access Connection unsecure with Cloudflare Tunnel

     
    • 0 Vote(s) - 0 Average

    Connection unsecure with Cloudflare Tunnel

    Cloudflare Tunnel + Cloudflared +Jellyfin
    Life from Scratch
    Offline

    Junior Member

    Posts: 3
    Threads: 1
    Joined: 2023 Dec
    Reputation: 0
    #1
    2023-12-01, 05:19 AM
    Hello! I have Jellyfin running in a Proxmox container. I'm accessing it using a Cloudflare Tunnel and a separate container running Cloudflared. I'm stuck behind CGNAT so that seems like my best option. It works, but I'm getting a "connection not secure" warning and it's using HTTP. I thought Cloudflare was supposed to take care of that, but I guess not. Certbot and Let's Encrypt seem like the answer here, but since I'm not using a reverse proxy (technically Cloudflared is my reverse proxy) the documentation doesn't cover my situation. Any guidance is appreciated!
    TheDreadPirate
    Offline

    Community Moderator

    Posts: 15,375
    Threads: 10
    Joined: 2023 Jun
    Reputation: 460
    Country:United States
    #2
    2023-12-01, 01:01 PM (This post was last modified: 2023-12-01, 01:01 PM by TheDreadPirate.)
    Your connection is secure between your server and the cloudflare exit node. After your traffic leaves the exit node it is unencrypted.
    Jellyfin 10.10.7 (Docker)
    Ubuntu 24.04.2 LTS w/HWE
    Intel i3 12100
    Intel Arc A380
    OS drive - SK Hynix P41 1TB
    Storage
        4x WD Red Pro 6TB CMR in RAIDZ1
    [Image: GitHub%20Sponsors-grey?logo=github]
    Life from Scratch
    Offline

    Junior Member

    Posts: 3
    Threads: 1
    Joined: 2023 Dec
    Reputation: 0
    #3
    2023-12-01, 03:39 PM
    The exit node being my Cloudclared container? That's what I figured was going on. So how do I get an SSL certificate to use HTTPS between the exit node and Jellyfin to get rid of the unsecured connection warning? All the documentation for using Certbot assumes that there's a webserver involved. Can I assume Jellyfin is running on Apache and just use those instructions?
    TheDreadPirate
    Offline

    Community Moderator

    Posts: 15,375
    Threads: 10
    Joined: 2023 Jun
    Reputation: 460
    Country:United States
    #4
    2023-12-01, 03:50 PM
    No. In cloudflare's infrastructure. But that doesn't change the fact that part of the connection is insecure.

    No. Apache/Nginx/Caddy are separate apps from Jellyfin that you need to set up. Additionally, you will need a domain, or a free DDNS domain from DuckDNS.

    Most people using containers will use something like Nginx Proxy Manager. It simplifies the setup process for beginners and automates certificate generation and renewal.
    Jellyfin 10.10.7 (Docker)
    Ubuntu 24.04.2 LTS w/HWE
    Intel i3 12100
    Intel Arc A380
    OS drive - SK Hynix P41 1TB
    Storage
        4x WD Red Pro 6TB CMR in RAIDZ1
    [Image: GitHub%20Sponsors-grey?logo=github]
    Life from Scratch
    Offline

    Junior Member

    Posts: 3
    Threads: 1
    Joined: 2023 Dec
    Reputation: 0
    #5
    2023-12-01, 09:43 PM
    I can't use DDNS because I'm behind CGNAT. I tried. I've got a domain and all that set up. I can access it fine, but I'm still getting the insecure connection notice in the browser. So i have to set up a proxy using Apache/Nginx/Caddy whatever inside the container with Jellyfin just to get an SSL cert with Let's Encrypt to cover the connection between my Cloudflared container and my Jellyfin container? That seems annoyingly over complicated.
    TheDreadPirate
    Offline

    Community Moderator

    Posts: 15,375
    Threads: 10
    Joined: 2023 Jun
    Reputation: 460
    Country:United States
    #6
    2023-12-01, 09:46 PM
    CGNAT makes everything overly complicated for self hosting.
    Jellyfin 10.10.7 (Docker)
    Ubuntu 24.04.2 LTS w/HWE
    Intel i3 12100
    Intel Arc A380
    OS drive - SK Hynix P41 1TB
    Storage
        4x WD Red Pro 6TB CMR in RAIDZ1
    [Image: GitHub%20Sponsors-grey?logo=github]
    « Next Oldest | Next Newest »

    Users browsing this thread: 1 Guest(s)


    • View a Printable Version
    • Subscribe to this thread
    Forum Jump:

    Home · Team · Help · Contact
    © Designed by D&D - Powered by MyBB
    L


    Jellyfin

    The Free Software Media System

    Linear Mode
    Threaded Mode