How to Secure your Synology NAS (Best Practices)

preview_player
Показать описание
There are various things you can do to secure your Synology NAS, but configuring certain settings, and a valid backup and recovery plan is arguably the most important. This video focuses on how to secure your Synology NAS and while nothing can guarantee you won't run into issues in the future, this should provide a rollback plan in the event that you do.

ℹ️ HELPFUL TUTORIAL LINKS ℹ️

💰 PURCHASE LINKS 💰 (affiliate links: as an Amazon Associate I earn from qualifying purchases)

🔋UPS Devices🔋

DISCLAIMER: The information in this video has been self-taught through years of technical tinkering. While we do our best to provide accurate, useful information, we make no guarantee that our viewers will achieve the same level of success. WunderTech does not assume liability nor responsibility to any person or entity with respect to damage caused directly or indirectly from its content or associated media. Use at your own risk.

WunderTech is a trade name of WunderTech, LLC.

0:00 Intro
1:05 Admin Account
1:58 Auto Block
2:53 SSH
4:26 Update Settings
4:53 Should You Use Synology's Firewall?
6:57 Configuring Synology's Firewall
12:00 Configuring 2FA
12:49 Additional DSM Settings
13:29 Port Forwarding
15:37 Final Thoughts for Settings
16:34 Configuring & Using Snapshots with BTRFS
17:35 Immutable Snapshots
20:06 Restoring from a Snapshot
21:09 You NEED to Configure Backups
21:50 Configuring Hyper Backup
27:08 Restoring from Hyper Backup
28:43 Final Thoughts
Рекомендации по теме
Комментарии
Автор

Finally a youtuber without background music!!! pure silence, only your voice! thank you for that!!!

JohnSmith-zlrz
Автор

@2:06 I suggest setting the values a tad smaller than defaults. Attackers know the defaults and wont try past the default. If you reduce the number of tries just by 1 you can capture those who try to fool the system to not get banned.

hellomihai
Автор

Amazing video Frank, spot on on all everything. Plus, is so well delivered and easy to stay engaged for the entire video. You should have a million subs!

QuikTechSolutions
Автор

I came across your site while searching for instructions on reverse proxy and I found your videos to be very informative and well explained. 👍 Greetings from Germany
👋👋👋

matay.J
Автор

Great tips! I did most of what is said on this video plus I have my Synology NAS set up that it can only be accessed outside my LAN via VPN (custom one using Wireguard). 💪

xellaz
Автор

Excellent work, sir! Thank you for your videos, Synology should pay you a ton of cash for those awesome guides

utubetack
Автор

Great video Frank. Every step is explained superbly! once again, this one goes straight to my favorite videos playlist! Excellent job!

TechMeOut
Автор

Great explanation of all the important features and functions - thanks

derkeoghsie
Автор

Seriously, you have become my favorite Synology channel of all! Always, articulate and precise on steps to take and recommendations. Thanks for that! 👍🏻

So, I have setup two local NAS’s. A primary 1821 (SHR-2) and secondary 1621 (SHR). I use ABB to backup all my PC’s/Mac and Hyper Backup to backup my primary NAS to my secondary NAS. In addition I have a 920+ offsite with Hyper Backups through a Tailscale VPN. So, I fell great having succeeded at an implementing a 3-2-1 backup strategy.

However, I have never setup Snapshot! I know! 🤦🏻‍♂️ But your video has inspired me to do so. One question, are Snapshots only allowed on the same NAS or can you have Snapshots saved on another local or remote NAS as well? Or if they must be saved on the local storage pool and you are using Hyoer Backup to backup to a separate local and remote NAS, I assume Snapshots are saved within those backups as well, correct?

Again, thank you! 👍🏻👍🏻

tonyvalenti
Автор

Thank you so much. I asked this question on an older video of yours, but I don't know if the video is still being monitored.

How do I assign shared folders to a network interface. I want any user on LAN2 (IoT/Guest subnet) to be limited to only video and music shared folders even if it is a user with full administrator access.

brend
Автор

Thank you so much.
Just what the doctor ordered!

guyh
Автор

I've said it before, but I'll say it again. Your new vid format really hits different. Thank you.
Out of curiosity do you do any paid consulting service?

Steve_Just_Steve
Автор

Love the pace of the instruction been given, could you do a video on how to share a folder, please in easy steps, I am a newbie and has setup a shared folder for household use but cannot get my wife to access the folder try the team share but just a spinning wheel.

carlbrown
Автор

great info i only got a synology nas for an off site back up my home system is overkill for most stuff

jaylord
Автор

Great video! Very infomrative and to the point! In my favourites list and subbed.

wdiermen
Автор

I am using 2 USB drives and change those once a week. The offline USB is stored offsite, so there is no need for any paid service. To make it more convenient, I am also storing on a second NAS which is on site but time controlled, so it will only boot up for hyperbackup and shut down thereafter, which is almost the same as off site with the exception of any physical harm.

OrbitZebra
Автор

its very Valuable video for me- what I looking for, thank you

anwar.shamim
Автор

Excellent security reminders! An idea for a future video perhaps could be one on Hyper Backup and versioning vs single backup options - especially for the versioning and how the software to access versions works on desktop machines. You may have already touched on this on your past videos? I’m in the process of working this out now as I want to be able to access my versions in the advent the NAS storage pool was to fail.

centurymodern
Автор

Great video! I have two questions for you:

- What's the real advantage of Snapshots compared to the recycle bin, which also allows you to recover deleted files?

- Is a firewall and/or VPN connection useful when you already use 2FA to connect to your NAS? What are the possible risks of not using a VPN, for example, and relying solely on 2FA with QuickConnect?

Thanks! :)

guillaumegirod
Автор

Thanks for the video... Very well put together.
Sadly for me.... I have far to much data for the cloud backup services to be a cost effective option
35TB of data would be so expensive I could buy a 2nd 1522+ in a few months
Maybe next year I will buy the expansion unit and back up to that.

TheCynysterMind
visit shbcf.ru