[DiscordArchive] I'd be interested in hearing how you run a server, if I may ask? Sounds like you know a good deal ab
[DiscordArchive] I'd be interested in hearing how you run a server, if I may ask? Sounds like you know a good deal ab
Archived author: Meltie • Posted: 2023-03-29T15:09:25.660000+00:00
Original source
Just saying
Archived author: Ĝ̷̳r̸̹͊a̷̜̚k̴̞̔ • Posted: 2023-03-29T15:10:26.363000+00:00
Original source
thing i found out, if you fill in custom costs then you need to make a patch for it
Archived author: Ĝ̷̳r̸̹͊a̷̜̚k̴̞̔ • Posted: 2023-03-29T15:10:34.831000+00:00
Original source
at least for the client to see them
Archived author: Revision • Posted: 2023-03-29T15:19:21.210000+00:00
Original source
Limit access to the server as much as humanly possible. If ports have to be exposed, use only those you absolutely need. Never give SSH access outwards without disabling passwords and only allowing private keys and keep that private key very safe. Never give full host access to MySQL (%) but limit it to specific addresses and only the users that absolutely need access from outside. There are a shit ton of small steps you can take to limit the chance of a world ending event. Not to mention the most obvious, use very secure and complex passwords for anything that can be accessed from the outside.
Archived author: Scortas • Posted: 2023-03-29T15:26:16.693000+00:00
Original source
Yeah only authserver and worldserver port are open and you can only access it from my friends IP address. I've enabled that with UFW. I do not access MySQL databases from anywhere else than just from the server computer also.
Archived author: Scortas • Posted: 2023-03-29T15:27:06.692000+00:00
Original source
Do you have ideas how to solve it safely that the dynamic IP changing would not be an issue anymore for my friends?
Archived author: Revision • Posted: 2023-03-29T15:27:15.912000+00:00
Original source
I tend to recommend changing the worldserver port from 8085 to something 'random', like 7539, but it doesn't make much difference. At least I don't suffer those malformed packet messages.
Archived author: Revision • Posted: 2023-03-29T15:27:55.271000+00:00
Original source
Allowing any IP to connect to the authserver and worldserver isn't the end of the world, I'm not sure why anyone would suggest otherwise.
Archived author: Revision • Posted: 2023-03-29T15:28:47.648000+00:00
Original source
Only services that don't need access from everywhere shouldn't be given it either. Most of the services I use can only be accessed by my IP and my private keys except 3724 and my random worldserver port.