Jump to content

Quick security question


Recommended Posts

Posted (edited)

I just got emby setup, love it so far. I use it with a domain I own and running behind a reverse proxy with ssl via nginx and lets encrypt. Not bad to setup.

 

My question is, is there any reason I need to convert my certs to plug in to  "Custom ssl certificate path:" still? Is that only useful if not using the reverse proxy? Are connections with the apps via phone, tv, etc still secure the way I am using this?

 

Thanks in advance!

 

**edit: forgot to mention its all on the same machine

Edited by Spiteful
Posted

Not an expert but I run the same setup. Connections to remote devices should be encrypted (easy to check with a browser) as NGINX is handling that part. Connections that don't go through NGINX will not be encrypted.

darkassassin07
Posted

No, you don't need to keep your cert installed/updated in the emby server itself unless you want the connection between nginx and emby to be secured with https as well. (totally unnecessary when they are on the same lan/machine).

 

Nginx handles the ssl between itself and the connected clients, then connects to emby via plain http. (as long as your nginx server is pointed at the http port of emby).

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...