← Back to context

Comment by PhilipRoman

14 hours ago

>Great now you moved the target from sshd to wireguard

I definitely agree with your general sentiment, but in this case wireguard has a much better designed protocol. No response to scans, waaaaay smaller attack surface, no deep integration with a shell that needs to be explicitly disabled depending on use case, no pile of obscure authentication options that you need to make sure to disable...