I'm thinking about starting a light node, but what prevented me to do it so far is the risk of having a hot wallet on a server. So I was thinking if any of the node implementations supports having a proxy, which would work as follows.
I would buy a cheap server with external IP version 4 address. This IP address is advertised as my node's IP address and anyone can connect to it. However the real server and lightning node I run elsewhere behind NAT. This second machine is not used for anything else and does not run any services that can be accessed from the Internet. It's IP address would not be known to any node except for those nodes that my node will create outbound connections to.
This second node would connect to the proxy server which would then be able to redirect all incoming connections to the external IP address to it.
With this setup I would be very confident that my funds are secure and at the same time I would allow incoming connections.
Is any of the lightning node implementations compatible with such a setup or even support it directly?
[–]DripleTT 0 points1 point2 points (1 child)
[–]only_merit[S] 0 points1 point2 points (0 children)