you are viewing a single comment's thread
view the rest of the comments
[–] 7 points 1 year ago (1 child)

hide your RDP server behind some VPN

Anyone who isn't doing this already is dumb. Same goes for exposing ssh publicly. I don't care that you're using a cert to log in, if there's a 0 day in the openssh server you're boned

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 1 year ago* (1 child)

    If there's a 0 day in the VPN software then I'm also probably boned. The chances of that seem on par with the likelihood of an openssh vulnerability? I feel like vpns are useful to secure services without good authentication, but their use in front of an openssh server has never made much sense to me.

  • source
  • parent
  • hideshow 2 child comments