想self host vaultwarden 但佢一定要https connection
但我唔想外網access 到個vaultwarden
研究左一排諗到一個方法可以https 但外網access唔到要經vpn
就係router open 443 port for reverse proxxy 同 1194 port for openvpn
然後nas firewall 只開1194 port 比外網連openvpn.
唔開443比外網access. 連左openvpn 之後先可以用reverse proxy 443 port 連 vaultwarden.
咁樣算唔算係安全?