callcc

joined 2 years ago
[–] callcc@lemmy.world 5 points 19 hours ago

Be sure to use a passphrase

[–] callcc@lemmy.world 1 points 19 hours ago (1 children)

I don't agree about the point concerning cost. You have additional training, update, maintenance and config burden. This on top of the burdon of using the VPN on top of ssh.

[–] callcc@lemmy.world 1 points 19 hours ago (1 children)

Ok, fair point. But why stop at one vpn? I choose to trust OpenSSH, but I agree that adding a secondary layer of security actually helps here. You basically multiply two very low probabilities to get an even lower one. The trade-off is that you add complexity. You now need to keep two services up to date, and correctly configured and access/key material distributed.

I'd only recommend this setup for projects with special security requirements.

[–] callcc@lemmy.world 1 points 1 day ago (4 children)

And why exactly is that more secure?

[–] callcc@lemmy.world -4 points 1 day ago

Welcome to the internet! Your system will get probed. Make sure you run as little as possible services on open ports and only high quality ones such as OpenSSH. Don't freak out because of your logs. You're fine as long as your system is up to date and password login disabled! Don't listen to the fail2ban or VPN crowd. Those are only snake oil.

A VPN is probably just as (in)secure as OpenSSH. There is no gain in complicating things. OpenSSH is probably one of the most well tested code for security around.

[–] callcc@lemmy.world 4 points 1 day ago (11 children)

Public ssh is completely fine as long as you use key based auth only and keep your sshd up to date. Stop spreading bullshit.

[–] callcc@lemmy.world -3 points 2 days ago

Came to day this :D

[–] callcc@lemmy.world 1 points 4 days ago (1 children)

Cookie banners are not mandated by GDPR. It's an unrelated piece of law.

[–] callcc@lemmy.world 4 points 1 week ago

Totally agree. This is a legitimate reason to chop the axis. There should be a law requiring schools to put a lot of time in teaching kids to read news and especially graphs.

[–] callcc@lemmy.world 4 points 2 weeks ago (1 children)

Give it a try. Only you can judge for your use cases

 

A new community where people can just vent about or actually do coordinate action against the pest of ultra bright LEDs.

 

Who can suggest an ethical SMTP provider for low volume transactional mail? I'm willing to pay up to 2€/month for a few hundred mails per month.

 

Hey, I've recently designed a Poster about the FHS since I often forget where I should place or find things. Do you have any feedback how to make it better?

Edit: Put up new version

Dark mode

Dark mode

view more: next ›