I have wireguard for other purposes but I also have ssh open on a different port. I don’t much understand the argument of exchanging ssh for wireguard. In the end, we’re just trading an attack vector for another.
My ssh only allows connections from my user. If I’m using password auth, I also request a 2FA.
Tail scale is also a good idea but I don’t like having my control plane under someone else’s control.
filister@lemmy.world 1 year ago
But Tailscale is Wireguard under the hood.
Holzkohlen@feddit.de 1 year ago
Yeah, but worse cause it’s company owned and not really open source. Why do people use tailscale? Are you so desperate to pay money for it?
art@lemmy.world 1 year ago
It’s open source and it’s free to use. Anything can sound bad when you just make shit up.
greavous@lemmy.world 1 year ago
I don’t pay money for it… 3 users/100 devices is free tailscale.com/pricing/