Comment on Need help ensuring my public mediawiki is safe before launch
xnx@lemm.ee 1 year agoAh ok thanks for the info! Do you know if vultrs firewall would make installing fail2ban redundant?
Comment on Need help ensuring my public mediawiki is safe before launch
xnx@lemm.ee 1 year agoAh ok thanks for the info! Do you know if vultrs firewall would make installing fail2ban redundant?
saint@group.lt 1 year ago
if you configure ssh access only from your home ip - then fail2ban is not needed.
xnx@lemm.ee 1 year ago
Oh perfect thanks
Haui@discuss.tchncs.de 1 year ago
But if your home ip ever changes, you‘re fucked. I would never do that. Pubkey is the way.
SheeEttin@lemmy.world 1 year ago
Method of authentication doesn’t matter if there’s a pre-authentication vulnerability: thehackernews.com/…/openssh-releases-patch-for-ne…
Instead of exposing multiple services, I would recommend just one VPN for remote access. Less attack surface.
Haui@discuss.tchncs.de 1 year ago
Thats how I do it. But I also have physical access so if the vpn fails I don’t get locked out.
saint@group.lt 1 year ago
usually i add more than 1 ip and also vultr firewall can be managed to change ip. tailscale can be used as well. there are options!
Haui@discuss.tchncs.de 1 year ago
That’s good! Had me worried there.