3
submitted 11 months ago by 1c34@alien.top to c/main@selfhosted.forum

i want to remotely ssh to my home server, and I was wondering if I could just forward port 22 with disabling password login and use pubkey authentication will be safe enough?

you are viewing a single comment's thread
view the rest of the comments
[-] Karyo_Ten@alien.top 1 points 11 months ago

VPN is easier to setup securely out of the box for most especially with limited knowledge.

One of the top audit companies disagrees with you: https://blog.trailofbits.com/2016/12/12/meet-algo-the-vpn-that-works/

[-] Internal-Initial-835@alien.top 1 points 11 months ago

A “top” audit company pushing their own agenda.

OpenVPN is simple and easy to deploy on any major operating system. Pfsense or similar is easy to setup and run in a VM. That does all the hard work for you and creates a profile. Then you essentially copy or download that profile to the client machine and you’re done. It’s all done via gui or web interface so is easier for a lot of people. My sister managed it. She wouldn’t have been able to handle command line stuff.

Like i said before though. Why not use a vpn and also harden your ssh. I can’t see a downside to that.

It’s just my opinion and experience from working with both. You’re welcome to dissagree and do your own thing though of course :)

this post was submitted on 28 Nov 2023
3 points (100.0% liked)

Self-Hosted Main

504 readers
1 users here now

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.

For Example

We welcome posts that include suggestions for good self-hosted alternatives to popular online services, how they are better, or how they give back control of your data. Also include hints and tips for less technical readers.

Useful Lists

founded 1 year ago
MODERATORS