Why did I think introducing #mTLS for some hosted services would be a fun idea for this evening? The mTLS part with #nginx inside an #lxc container was actually the easy part.
Troubleshooting the reverse proxy was the bad part. First I forgot one of the servers powers down at a given time. I was wondering why I did not get any connection for like 30 mins... Then I got an error page and hunted that error down for like 90 mins. In the end, I forgot one port... Learned a lot though. #selfhosting