As the title says, I want to know the most paranoid security measures you’ve implemented in your homelab. I can think of SDN solutions with firewalls covering every interface, ACLs, locked-down/hardened OSes etc but not much beyond that. I’m wondering how deep this paranoia can go (and maybe even go down my own route too!).

Thanks!

  • Appoxo@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 years ago

    Why would you rotate passsord though?
    Rather choose something random and strong than changing it every 6th moon.

    • easeKItMAn@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      2 years ago

      Rotating passwords only for web services. Vaultwarden does make it easy. Not all services allow 2FA.

      • Appoxo@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 years ago

        Sounds still excessive but that’s what the thread is here for.
        Would probably understand it more if I knew more aspects.

        Cheers to more cybersec :)