Basically every local service is accessed via a web interface, and every interface wants a username and password. Assuming none of these services are exposed to the internet, how much effort do you put into security here?
Personally, I didn't really think about it when I started. I make a half-assed effort at security where I don't use "admin" or anything obvious as the username, and I use a decent-but-not-industrial password - but I started reusing the u/p as the number of services I'm running grew. I have my browsers remember the u/ps.
Should one go farther than this? And if so, what's the threat model? Is there an easier way?

you are viewing a single comment's thread
view the rest of the comments
[–] 4 points 2 years ago (1 child)

The only windows machine on my home network is the backup Windows laptop that I only boot when I need to run something like Odin to flash a tablet or some niche Nintendo switch management software.

  • source
  • parent
  • hideshow 2 child comments
  • [+] -7 points 2 years ago* (1 child)

    And now your entire system/network is vulnerable because of it. Great idea!

  • source
  • parent
  • hideshow 2 child comments
  • [–] 2 points 2 years ago (1 child)

    Yes, the machine that stays off 363 days of the year is such a security risk to my home network 🙄

  • source
  • parent
  • hideshow 2 child comments