Comment on How to harden against SSH brute-forcing?
cron@feddit.org 1 day agoNice list of suggestions, but implementing all of them feels a little over-the-top.
Comment on How to harden against SSH brute-forcing?
cron@feddit.org 1 day agoNice list of suggestions, but implementing all of them feels a little over-the-top.
30p87@feddit.org 1 day ago
Tbh, I myself still have SSH on port 22. Firstly, because I’m lazy, and secondly … yeah that’s it. I’m honestly just lazy. But spam bots trying office/cookie123 are not a real threat, and anyone trying to actually target me will either have somehow acquired my key + password, use one of the probably many security issues that exist in the dozen services I selfhost, social engineer me into doing something (not saying I’ve given out my (old) KeePass password once, but it could be, as love makes blind (I still love her)), or just smash my kneecaps until I give out everything.