SubDepthTech squid insignia

SubDepthTech

Blog Ops

Posts Categories Contact

Tag Archive

#security

5 posts linked to this topic.

Back to all posts

web · Mar 7, 2026

Hardening Traefik with CrowdSec forwardAuth in a Homelab Reverse-Proxy Stack

Practical homelab guide to wire Traefik forwardAuth with CrowdSec, validate it, and handle the security tradeoffs before production.

tools · Feb 28, 2026

Secure Remote Docker Deployments with Proton Pass CLI, Docker Contexts, and SSH

Idempotent remote Docker deploys over SSH with Proton Pass CLI secrets, including the security tradeoffs and mitigations that actually matter.

tools · Feb 21, 2026

Pi-hole + Unbound Behind Traefik with a Clean /admin Redirect

How this homelab publishes Pi-hole admin via Traefik while keeping DNS local, with practical hardening steps for the risky defaults.

tools · Feb 14, 2026

Running Paperless-ngx Behind Traefik with Internal Network Segmentation (Redis + Postgres)

A homelab-backed Paperless-ngx + Traefik deployment with segmented Redis/Postgres networks, concrete checks, and security hardening lessons.

ai · Feb 7, 2026

Durable AI-Agent Memory in a Homelab Repo with MCP Setup/Check Scripts

Use setup/check scripts and a Dockerized MCP memory server to keep agent context durable while avoiding secret leakage into repo memory.

SubDepthTech

Field notes from AI experiments, secure architecture decisions, and submarine-grade operational discipline.

Navigate

  • Home
  • All Posts
  • AI Category
  • Contact
  • RSS Feed

Mission

Build in public. Share real tradeoffs. Keep systems resilient.

© 2026 SubDepthTech. Static by Astro. Deployed to Cloudflare Pages.