4 ms·
OpenVPN: - Exposes less code to attack - Can be run on a single machine, distinct from your production systems, where compromise will only result in a comprom
by pbsdp 13y ago
OpenVPN:
- Exposes less code to attack
- Can be run on a single machine, distinct from your production systems, where compromise will only result in a compromise of VPN communications, not of an actual production machine on which your production data/processes exist.
- stock_toaster 13y agoA few people use spiped[1] in similar fashion. [1]: http://www.daemonology.net/blog/2012-08-30-protecting-sshd-using-spiped.html http://www.daemonology.net/blog/2012-08-30-protecting-sshd-u...
- lutorm 13y agoCan't you just run an ssh gateway and accomplish the last goal, though?