Zvyozdochka [she/her, comrade/them]@hexbear.nettofediverse@hexbear.net•TankieTube Official LaunchEnglish
4·
2 months agoIf you have the capacity to tremble with indignation every time that an injustice is committed in the world, then we are comrades.
🇵🇸 🇵🇸 🇵🇸 🇵🇸
Then incoming ssh could be restricted to the local 10.x.x.x whatever subnet used. Is that closer to what you had in mind?
Something of that nature, you could instead bind SSH to that subnet so you don’t have to worry about the firewall shenanigans.
.
Exposing SSH to the public internet, key authentication only or not, is kind of scary. I’d really recommend only allowing SSH connections through a private VPN.
Ignore the double post, website broken for a second and threw an error so I reposted
Wake up… please…