• 0 Posts
  • 371 Comments
Joined 5 months ago
cake
Cake day: November 1st, 2024

help-circle

  • Does it need to be exposed to the internet? Putting it behind a vpn would be best.

    Besides that, just make sure only the users you need to have access to ssh logins, and use keys for extra hardening. Keep your system updated. Limit that system’s access to other systems on your network, so if it is compromised, they can’t use it as a pivot point for the rest of your setup.

    The other commenter’s suggestion of fail2ban is also solid.

















  • Yeah, I know. Same on Windows Server Core I believe, but the option is in there to enable it.

    I admit I don’t know the technical details well enough. But I know the user experience difference is ridiculously bad trying to remote into Linux. My workflow now is mostly using my tablet and remoting. If Linux had better Remote Desktop protocol, it’d also be my go-to for a desktop experience. Right now, if I can’t use the terminal app for something, I’d rather just remote into a Windows box than feel like I’m using a computer from the 90’s with Linux Remote Desktop options.