I have my pangolin server set up and working, providing forward auth and roll based access before reverse proxying my self hosted resources.

However when I have the pangolin zero-trust client connected, I want to skip the forward auth since I’m already authed via the client. I want to do this since some apps like Jellyfin don’t play nice with the forward auth.

I can’t find a way to achieve this - there is no rule for connected clients. When I set up as a private resource, then I don’t get the reverse-proxy functionality, so when the client is connected my urls change (need to add ports), which isn’t really acceptable.

I can set up another reverse proxy behind pangolin, but pangolin already provides reverse proxying so that seems silly.

What am I missing? How can I achieve the goal of skipping forward auth when the pangolin client is connected?

  • prenatal_confusion@feddit.org
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    2
    ·
    2 days ago

    This! I couldn’t put it in words but this sums it up perfectly. I am using the Webinterface for jellyfin when on the road and I really would love to use the regular client.