Comment on How much do you secure a home server that's only accessible with VPN?
surewhynotlem@lemmy.world 3 weeks agoSecurity through obscurity is not sufficient. It’s also not nothing.
Comment on How much do you secure a home server that's only accessible with VPN?
surewhynotlem@lemmy.world 3 weeks agoSecurity through obscurity is not sufficient. It’s also not nothing.
possiblylinux127@lemmy.zip 2 weeks ago
Wireguard doesn’t respond to port scans so it changes nothing
surewhynotlem@lemmy.world 2 weeks ago
Assume a security researcher finds a bug in wireguard that, if sent a malformed packet, it can crash the service. Then it would be trivately easy to send that packet to the default port on every IP address and just crash everything for fun.
It costs me nothing to increment the port by 1 and avoid all that drama.
Cyber@feddit.uk 2 weeks ago
And, to be fair, you’ll know more about your setup when you don’t use the defaults as you have to learn more…