Yesterday, 02:57 PM
I used alternate ports for external connections (significantly reduces connection attempts) and fail2ban for the rest.
I disable root login via ssh, I disable password logins via ssh (PKI only), and I lock down connections to TLS1.2 and 1.3 and only with secure ciphers.
I disable root login via ssh, I disable password logins via ssh (PKI only), and I lock down connections to TLS1.2 and 1.3 and only with secure ciphers.