Comment on How do I avoid becoming one with the botnet?
golden_zealot@lemmy.ml 1 day ago
If you don’t need stuff publicly accessible, and just need it accessible to you, then set up a small computer on the network as an ssh Bastion host/jump server, put it on a VPN connection with a VPN provider that offers dyndns, forward the ssh port through the dyndns, and then off network, reverse proxy in with socks5 via key based ssh -D to gain access to all the services available inside the LAN.
Been doing this for a few years, works great and no one is getting in without my ssh key.
Appoxo@lemmy.dbzer0.com 1 day ago
Or with a zero day.
Chance is close to zero but never absolute 0 ;)
golden_zealot@lemmy.ml 1 day ago
True enough.