add fail2ban, so they cannot brute force the web interface.
Comment on How do you facilitate remote access?
Vake@lemmy.world 1 year ago
I just have all my services exposed through reverse proxy with whatever authentication they have on their webpage. I see most people using VPN which I know is the more secure option but I like the zero setup of just typing in the name of the service I want to go to and just having it work. Is there a better way to secure this?
Reborn2966@feddit.it 1 year ago
dinosaurdynasty@lemmy.world 1 year ago
Do authentication in the reverse proxy if you can (e.g., basic auth or forward auth like Authelia, the second also has the benefit of SSO).