

I was thinking more along the lines of simply thowing up a port to SSH into. No Fail2Ban and no keys, just a password.
I would just containerize and reverse proxy, but I understand the hesitation, wireguard would be preferable.
I was thinking more along the lines of simply thowing up a port to SSH into. No Fail2Ban and no keys, just a password.
I would just containerize and reverse proxy, but I understand the hesitation, wireguard would be preferable.
Any reason you prefer to wireguard into Navidrome instead of reverse proxying to a domain?
You’d hope, but I have a few friends who simply port-expose their media servers.
I guess it could be worse if they had ssh exposed.
Definitely agree. If you need to spin up a bunch of discrete VMs for labbing, that’s one thing, but noise, cooling, power consumption, and space all come into play for dedicated hardware. I host a variety of services and they all run on small, low energy hardware (which is often pretty cheap). I just spun up a matrix server on a $100 ebay HP ProDesk which has plenty of power (probably enough to deploy my whole stack).