This required port forwarding, a docker proxy, and a docker network, but the end result should be much more secure!
I think this still validates everything we need it to