- Never host anything that is externally accessible
- If you have to, put it behind a VPN (OVPN, Wireguard, IPSec, Tailscale, etc.)
- Certificate based authentication is preferred for VPN tunnels
- Always TLS encrypt your actual endpoints. Private CAs are most secure but a pain in the ass. Let’s Encrypt is very simple to set up in most cases.
Just my 2 cents.
They did not take money from anyone. Are ‘t we on the priacy community? What is with the double standards? It’s theft if it’s against the Little Guy(tm) but it’s civil copyright violation if it’s against the Corpos?