Update CLAUDE.md with complete security info
Added firewall rules, Fail2ban on both core and Forgejo, and NPM update command for quick reference. Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
This commit is contained in:
parent
196531b6bf
commit
6fe9fb2297
1 changed files with 13 additions and 1 deletions
14
CLAUDE.md
14
CLAUDE.md
|
|
@ -96,9 +96,21 @@ ssh mikkel@10.5.0.111 # dev container
|
||||||
|
|
||||||
## Security
|
## Security
|
||||||
|
|
||||||
|
- **Home IP:** 83.89.248.247 (whitelisted everywhere)
|
||||||
- **NPM Access List "home_only" (ID 1):** Restricts access to home IP only
|
- **NPM Access List "home_only" (ID 1):** Restricts access to home IP only
|
||||||
- Applied to: dns.georgsen.dk, dockge.georgsen.dk, pbs.georgsen.dk
|
- Applied to: dns.georgsen.dk, dockge.georgsen.dk, pbs.georgsen.dk
|
||||||
- **Fail2ban:** Running on Forgejo (bans after 5 failed attempts for 24h)
|
- **Fail2ban:** Running on PVE host (core) and Forgejo
|
||||||
|
- SSH jail on core, forgejo jail on Forgejo
|
||||||
|
- Bans after 5 failed attempts for 24 hours
|
||||||
|
- Whitelisted: 127.0.0.1, 10.5.0.0/24, 83.89.248.247
|
||||||
|
- **Firewall (core vmbr0):** Blocked ports: 53, 111, 3128, 8006, 8008 (home IP allowed)
|
||||||
|
|
||||||
|
## Container Management
|
||||||
|
|
||||||
|
**Update NPM:**
|
||||||
|
```bash
|
||||||
|
ssh root@10.5.0.1 'cd /opt/npm && docker compose pull && docker compose up -d'
|
||||||
|
```
|
||||||
|
|
||||||
## User Preferences
|
## User Preferences
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Add table
Reference in a new issue