SomeBoyo@feddit.de to Selfhosted@lemmy.world · 8 months agoWhat are common practice's for hardening/securing your server?message-square60fedilinkarrow-up144arrow-down10
arrow-up144arrow-down1message-squareWhat are common practice's for hardening/securing your server?SomeBoyo@feddit.de to Selfhosted@lemmy.world · 8 months agomessage-square60fedilink
minus-squareShortN0te@lemmy.mllinkfedilinkEnglisharrow-up1·8 months ago Imagine that the xz exploit actually made it into your server, so your sshd was vulnerable. Having it on another port does seem helpful then. Nope. Your entire server can be scanned in less than a second for an open ssh port. IPv6 does not change the fact since when your server is attacked the hist IP is already known.
Nope. Your entire server can be scanned in less than a second for an open ssh port.
IPv6 does not change the fact since when your server is attacked the hist IP is already known.