…without snark or jumping down my throat. I genuinely want to know why it’s so unsafe.

I’m running a Synology DS920+, with my DSM login exposed through a Cloudflare tunnel. I have 2FA enabled, Synology firewall enabled with these rules in place. I also have this IP blocklist enabled.

After all of this, how would someone be able to break in via the DSM login?

You are viewing a single thread.
View all comments View context
1 point

The other risk to that is they’d possibly gain access to your internal network through your NAS. No telling what a bad actor would do.

permalink
report
parent
reply
1 point

Much more likely to gain access via a compromised desktop, or smart phone.

permalink
report
parent
reply
1 point

The NAS runs its own OS and is just as vulnerable as a desktop or smartphones. They’re all computers.

permalink
report
parent
reply
1 point

Yes, but the other computers I listed have a person behind them that will click things. Like a “close” button that actually installs malware. A NAS does not click things.

permalink
report
parent
reply

Homelab

!homelab@selfhosted.forum

Create post

Rules

  • Be Civil.
  • Post about your homelab, discussion of your homelab, questions you may have, or general discussion about transition your skill from the homelab to the workplace.
  • No memes or potato images.
  • We love detailed homelab builds, especially network diagrams!
  • Report any posts that you feel should be brought to our attention.
  • Please no shitposting or blogspam.
  • No Referral Linking.
  • Keep piracy discussion off of this community

Community stats

  • 10

    Monthly active users

  • 1.4K

    Posts

  • 6K

    Comments