I do ssh because I’m more comfortable with it: it’s ubiquitous and as close to bulletproof as any security. Put it on a nonstandard port, restrict authentication to public keys, and I have no qualms.
Comment on What are your thoughts on exposing a tool like dockge to outside of your man?
anytimesoon@feddit.uk 6 months agoThis is pretty much my situation. “Away from home” for me isn’t just a trip to the shops, it means being away for weeks at a time. I need to be able to fix things remotely if needed.
I’ve seen people recommend SSH, which seems worse because that would give potential hackers access to the whole system.
VPN is a very good suggestion, and what I’ve implemented now. Thank you to everyone who contributed
tburkhol@lemmy.world 6 months ago
Oisteink@feddit.nl 6 months ago
Stick to strong keys and keep it on 22 for ease if use
tburkhol@lemmy.world 6 months ago
I just don’t like my logs filling up with scripted login attempts. Even with fail2ban, for a while there I was getting 100+ login attempts every day, and it upset my sense of order.
Oisteink@feddit.nl 6 months ago
No - ssh is very easy to secure, while an exposed web-service is very hard to secure. Theres no difference in the security of ssh without password and for example WireGuard.