I'm being thick. I know what I want to do and there's a billion sets
of (largely contradictory) sets of instructions on the Internet so I'm
giving in and asking here as I'm sure some people here do something
similar, and others may well like to.

I have a few Pi's dotted around behind NAT that I want access to. I
also have hosted servers i can play with so it's simple: Pis connect
to the server and set up reverse tunnels, and maintain them using
autossh (or skip autossh and use systemd I guess).

But I want to try and be fairly secure about it. For example I don't
want using my hosted server to provide access to a Pi to provide any
access to the hosted server itself, either to the Pi or whatever is
trying to access the Pi via the server, beyond what's absolutely
necessary to provide the gateway. I think that's where I'm getting in
a mess; I'm not sure which user accounts need to be set up to not
allow login and I'm going round in circles!

Anyone able to give me a quick set of instructions, or to point me to
a set online that they understand well enough that I can ask questions
when I mess it up?

At the end of this I don't just want something that works, I want to
actually understand what I'm doing and why.

-- 
Mark Rogers // More Solutions Ltd (Peterborough Office) // 0844 251 1450
Registered in England (0456 0902) 21 Drakes Mews, Milton Keynes, MK8 0ER

_______________________________________________
Peterboro mailing list
[email protected]
https://mailman.lug.org.uk/mailman/listinfo/peterboro

Reply via email to