Because I'll surely have an TLD for my local nginx and for my home router...
Because I'll surely have an TLD for my local nginx and for my home router...
https://github.com/PowerDNS/pdns
It's also fairly complete, used in production by some pretty big ISPs.
For a light weight approach instead, Dnsmasq is good:
http://www.thekelleys.org.uk/dnsmasq/doc.html
It's what most home routers (and lots of other stuff) embed. :)
It’s just a bit of a pain to maintain if the only thing you care about is connecting to server nr 192.168.0.x
I could certainly do it, but there’s 5 services in my house I’d care to connect to, and remembering 1-5 is just as easy as giving them all names. The marginal gains are very low.
Personally I tend to throw the more stable IP addresses in /etc/hosts, as that's simple too. :)
If you go around exposing services on the internet then you should know how to do it properly. If you can get a name on it then you can put a SSL certificate on it (cheers Lets Encrypt).
If you have a SSL cert on it then you can be fairly sure you are talking to your gear and not a MitM if you take other precautions.
I absolutely do have a LE SSL cert for my home router and all my home web sites. pfSense has a ACME and dynamic DNS client for many services and HA Proxy built in. What more could you want!
I'm in the group that you're speaking of—I have a personal server set up that I can log into remotely, but the prospect of setting up a domain and TLS is very daunting. But, I don't think people like me are all that common.