logoalt Hacker News

lxgrtoday at 12:18 AM2 repliesview on HN

Sounds like a great idea until you ever try to connect to your own servers from a network with spammy neighbors.


Replies

kees99today at 1:03 AM

Back in the day - port knocking was a perfect fit for this eventuality.

Nowadays, wireguard would probably be a better choice.

(both of above of course assume one is to do a sensible thing and add "perma-bans" a bit lower in firewall rules, below "established" and "port-knock")

BLKNSLVRtoday at 1:02 AM

Good network admins have contingencies for contingencies for contingencies.