Sign inSign up

barney241/arr-proxy

By barney241

•Updated 10 months ago

Secure Sonarr/Radarr API Proxy build for exposing arr services to the internet

Image
Security
Web servers
0

2.4K

barney241/arr-proxy repository overview

⁠Arr-Proxy

https://github.com/Barney241/arr-proxy⁠

License: MIT

A secure API gateway for Sonarr and Radarr. Enforces endpoint whitelists, injects API keys, and handles authentication.

⁠Quick Start

docker run -p 8080:8080 \
  -e APP_PORT=8080 \
  -e APP_API_KEY=my-secret-key \
  -e RADARR_URL=http://radarr:7878 \
  -e RADARR_API_KEY=your-radarr-key \
  barney241/arr-proxy:latest
curl -H "X-Api-Key: my-secret-key" http://localhost:8080/radarr/api/v3/system/status

⁠Features

  • Authentication: API Key (default), mTLS, or Basic Auth
  • Whitelist Enforcement: Block endpoints not in your allow-list
  • Method Restrictions: Limit endpoints to specific HTTP methods (GET, POST, etc.)
  • Secret Injection: Clients don't need backend API keys
  • Structured Logging: JSON logs with request tracing

⁠Endpoints

EndpointDescription
GET /infoView active configuration
/sonarr/*Proxy to Sonarr
/radarr/*Proxy to Radarr

⁠Documentation

⁠Examples

See examples/⁠ for Docker Compose configurations:

⁠Architecture

Client  ──▶  arr-proxy  ──▶  Sonarr/Radarr
              │
         ┌────┴────┐
         │Whitelist│
         │  Auth   │
         │API Keys │
         └─────────┘

Tag summary

Content type

Image

Digest

sha256:068fff7e2…

Size

10.5 MB

Last updated

10 months ago

docker pull barney241/arr-proxy