i have a lot of stuff exposed to the web. i got a domain from godaddy, attached my public ip and created a subdomain for each service.
than i have traefik that manage the tls and route each subdomain to each of the docker containers.
in total i have exposed 80, 443, and a random port i use for ssh.
of course ssh is only by public key.
now i'm trying to set up fail2ban on the exposed services since someone could bruteforce them.
but no one is creating a pass phrase 18 word long.
how does a password compare to 4/5 word pass phrase?
maybe adding - in the middle and a number at the end (bitwarden format)
yes, is in the settings. there are quite a few personalizations.