Comment on Need help ensuring my public mediawiki is safe before launch
xnx@lemm.ee 8 months agoAh ok thanks for the info! Do you know if vultrs firewall would make installing fail2ban redundant?
Comment on Need help ensuring my public mediawiki is safe before launch
xnx@lemm.ee 8 months agoAh ok thanks for the info! Do you know if vultrs firewall would make installing fail2ban redundant?
saint@group.lt 8 months ago
if you configure ssh access only from your home ip - then fail2ban is not needed.
xnx@lemm.ee 8 months ago
Oh perfect thanks
Haui@discuss.tchncs.de 8 months ago
But if your home ip ever changes, you‘re fucked. I would never do that. Pubkey is the way.
SheeEttin@lemmy.world 8 months ago
Method of authentication doesn’t matter if there’s a pre-authentication vulnerability: thehackernews.com/…/openssh-releases-patch-for-ne…
Instead of exposing multiple services, I would recommend just one VPN for remote access. Less attack surface.
Haui@discuss.tchncs.de 8 months ago
Thats how I do it. But I also have physical access so if the vpn fails I don’t get locked out.
saint@group.lt 8 months ago
usually i add more than 1 ip and also vultr firewall can be managed to change ip. tailscale can be used as well. there are options!
Haui@discuss.tchncs.de 8 months ago
That’s good! Had me worried there.