Hacker News new | ask | show | jobs
by closeparen 2704 days ago
Is OpenVPN a safer attack surface compared to OpenSSH?
3 comments

Sure, especially when you VPN into a sacrificial subnet and need MFA to continue elsewhere into locked down application domains. OTOH I would leave ssh listening on a non-descript high port with MFA (key and OTP) enabled. No use worrying too much about that.
Is OpenSSH safer when used in addition to OpenVPN?

Probably.

I doubt it.