I used to deliberately use 80 and 8080 for our VPN server. There is zero extra security in using some other port. The issue is having a secure firewall and VPN server.
The logic was that some places (the local University, Libraries, Cafes & Hotels) only allow the ports for web access outgoing and had no way of knowing it wasn't a web site. Then email and other services used our home ISP and a dodgy Wifi point doing even HTTPS man-in-the-middle or evil DNS didn't matter.
Originally we used a VPN server on NT4.0 Server in the attic then on Linux, and used port forwarding on an OpenWRT based router/firewall. Then we used a VPN server on the OpenWRT.
The amount of traffic dictates what sort of HW solution is used and expertise is needed to secure the server.
The port used is irrelevant to security.
|