Hacker News new | past | comments | ask | show | jobs | submit login

But my SSH already uses Public Keys and ChaCha20/Poly1305 so that's really the last protocol I worry about sending through hostile territory



With Wireguard I believe you can go further and your servers can have only private IPs. And it's all seamless.


But the servers have to have a public IP to terminate the wireguard link, or be connectable from a machine that does. Exactly like SSH, be it via a bastion host or direct.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: