FerryDocs
ArchitectureSecurity model

The dashboard on a hostname

The proxy can serve the dashboard and the API on a hostname. Do this only with HTTPS.

Edit on GitHub
InternetProxydashboard hostAPI + dashboard

With a dashboard host, the proxy serves the dashboard and the full API on one hostname.

1 / 3

--dashboard-host sets the . Use it only with : --https-addr and --acme-email. The safer default for a production server is an SSH tunnel.

The default

Dashboard on the proxy
Local: localhost, .local, .internal, .test, an IP addressOn, at ferry.<base-domain>
A public domainOff. You must enable it explicitly.

A public server with no --base-domain

The base domain is then localhost, and the dashboard is at ferry.localhost on the public proxy. Each person can ask for it: they send that Host header. Start such a server with --dashboard-host none, or with a hostname of your own and HTTPS.

Turn it off

On the server
ferryd --dashboard-host none

Production setup shows a hostname of your own with HTTPS.

On this page