• 2 Posts
  • 32 Comments
Joined 1 year ago
cake
Cake day: March 11th, 2025

help-circle











  • Exposing wireguard port is not that bad since it’s key auth. Wireguard itself is quite minimal, so it tends to be quite secure and it shouldn’t appear in port scans.

    So I wouldn’t worry as much as with other things you can expose.

    For usability, you just share a config file with the user and tell them which app to install. Very smooth experience.

    However you still need to keep the security in mind when you are letting someone into your network. Setup a DMZ or use ACLs (with iptables for example).

    As for myself, I want to be as self sufficient as possible, especially from US tech, so I don’t use cloudflare.