3 ms·
There's nothing inherently good or bad about running SSH on another port. Honestly this argument is a bit silly given how easy it is to port-scan and many scrip
by druiid 13y ago
There's nothing inherently good or bad about running SSH on another port. Honestly this argument is a bit silly given how easy it is to port-scan and many scripts out there will do that before actually trying anything. Essentially all you're going to do is make things annoying for your users.
The really real good idea is running a VPN in front of all of your servers and never allowing SSH access to the outside world. I have two ports (at most) open on all of my servers: 80 and 443. OpenVPN takes less than an hour to setup. There's no reason not to set it up!
- virtualwhys 13y agoAgreed, VPN via physical firewall is a particularly nice solution. Sounds like you've offloaded mail, dns, etc. elsewhere if you only have at most 80 and 443 open.