But if your home ip ever changes, you‘re fucked. I would never do that. Pubkey is the way.
Comment on Need help ensuring my public mediawiki is safe before launch
saint@group.lt 1 year agoif you configure ssh access only from your home ip - then fail2ban is not needed.
Haui@discuss.tchncs.de 1 year ago
SheeEttin@lemmy.world 1 year ago
Method of authentication doesn’t matter if there’s a pre-authentication vulnerability: thehackernews.com/…/openssh-releases-patch-for-ne…
Instead of exposing multiple services, I would recommend just one VPN for remote access. Less attack surface.
Haui@discuss.tchncs.de 1 year ago
Thats how I do it. But I also have physical access so if the vpn fails I don’t get locked out.
saint@group.lt 1 year ago
usually i add more than 1 ip and also vultr firewall can be managed to change ip. tailscale can be used as well. there are options!
Haui@discuss.tchncs.de 1 year ago
That’s good! Had me worried there.
xnx@lemm.ee 1 year ago
Oh perfect thanks