For example, I prefer to use a VPN instead of port forwarding. And I use SSH for anything I used to use an FTP for.

  • poVoq@slrpnk.net
    link
    fedilink
    English
    arrow-up
    0
    ·
    2 years ago

    TOTP MFA highly recommended on SSH and webconsole. The so called “google-authenticator” makes it easy and despite the name does not use any external Google services.

    • ReversalHatchery@beehaw.org
      link
      fedilink
      arrow-up
      1
      ·
      2 years ago

      Yes, but if using an android phone, the Aegis app may be a better choice. Guaranteed to not have tracking, and secrets are encrypted

  • thisisawayoflife@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    2 years ago

    I share services with the public, so… strong passwords on everything, MFA, host scanning, SSH MAC/KEX/ciphers tweaked to ultra modern set and exposed only with keys with f2b activating on first failure, constant backups and automatic updates and scheduled reboots. Has worked great for a decade+.