Allow acces gui public ip only from vpn

Hello, in my freepbx i whitelisted my public ip of my openvpn so i can access my freepbx gui with public ip, because openvpn is not on the same network as freepbx , is it safe this way.thanks

It’s not recommended to allow untrusted access to the Admin GUI port.

In theory if your completely up to date on all software including your base OS there is minimal risk. In reality only reported vulnerabilities are fixed so you could easily be owned by a zero day or undisclosed attack.

tl;dr don’t ever expose your server if you don’t have to.

I am only allowing access from the ip of my vpn server, i am only afraid if it is possible for someone to change their ip as my vpn server ip and access my freepbx?

