Hey,
I am currently paying 5,50€ a month for a Hetzner VPS to selfhost a Pangolin instance. I’ve come to quite rely on Pangolin, because I have to access all of my selfhosted services from my home server from remote. That’s because I have to keep my server at home (while I live in a student dorm, which doesn’t allow using their network to host servers). Also their authentication and private resources are really good for security and exposing ssh and other stuff from my home server to authenticated clients.

Anyway, I like this setup, because it is fully FOSS and I have 100% control of what my VPS does. It is really expensive though and I am trying to reduce my monthly expenses right now.

I saw online, that you can get a free managed instance of Pangolin on their website (https://pangolin.net/pricing Cloud). It would meet all my needs, but I wouldn’t be 1. Fully FOSS (because they probably run the business licensed version of their software) and 2. I wouldn’t have full control.

These services work by managing all the https certs themselves, so the have to decrypt all their traffic and send it through the tunnel to your server. Theoretically, Pangolin could log all my traffic to and from my server, which would be a huge privacy risk. But probably they’re not, because that would be really impractical…? I don’t know.

Do you think, it would be worth the privacy tradeoff for the cost savings?

  • hendrik@palaver.p3x.de
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    8 hours ago

    Maybe as another option, you could try to find a few other students and pool your money for a shared VPS? Back then I used to share an internet connection with few people to make it more affordable. We also used to share some storage space for stuff and the CS students did a website and an internal message board. I’m old, though. No clue how they do it as of today.

    • DeckPacker@piefed.socialOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      8 hours ago

      That is a cool idea, but unfortunately, I don’t know anyone, that would be willing to do this. One of my friends has a selfhosted server, but he doesn’t want to pay for stuff like that. He uses everything through a VPN, so he has no running costs.

      I did just come up with a pretty good solution though. I looked into Netbird and they actually have tls-passthrough functionality, so I could just run my nginx-reverse proxy locally which handles the certs and encryption and I could be 100% shure, that the company can’t read my traffic.