iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more
To SSH into a NAS or home server, enable its SSH service, then connect to its private IP address with an allowed account and the configured port. When you are away from home, first connect through a VPN or private overlay network; then SSH to the host over that private connection. Avoid making router port forwarding to SSH your default remote-access setup.
What you need before connecting
SSH is an encrypted remote-login protocol. An SSH client on your computer connects to an SSH server on the NAS or home server. OpenSSH is a common implementation that includes client, server, key-generation and SFTP tools; the host must have an SSH server enabled and reachable for a connection to work. See the OpenSSH project.
- The NAS or server’s private IP address, or its private-network hostname.
- The SSH port configured on the host. The usual default is 22, but confirm the actual setting rather than assuming it.
- A username and authentication method allowed by that host.
- For remote access, a VPN or private overlay connection active on both the device you are using and the home network or server.
Enable SSH on the NAS or server
QNAP NAS running QTS 5.2
In QTS 5.2, open Control Panel > Network & File Services > Telnet / SSH, select Allow SSH connection, set a port if needed, and apply the change. QNAP’s instructions say that only administrator accounts can log in remotely using SSH. These steps and account rules are specific to QTS 5.2; check the instructions for your model and installed software version. QNAP: How to use SSH to access a QNAP NAS.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
Synology NAS
Synology documents the setting under Control Panel > Terminal & SNMP > Terminal. Enable SSH and apply the setting. Menu names and availability can vary by model and DSM version, so consult the documentation matching your NAS. Synology: Terminal settings.
#1 Best Overall
- Value NAS with RAID for centralized storage and backup for all your devices. Check out the LS 700 for enhanced features, cloud capabilities, macOS 26, and up to 7x faster performance than the LS 200.
- Connect the LinkStation to your router and enjoy shared network storage for your devices. The NAS is compatible with Windows and macOS*, and Buffalo's US-based support is on-hand 24/7 for installation walkthroughs. *Only for macOS 15 (Sequoia) and earlier. For macOS 26, check out our LS 700 series.
- Subscription-Free Personal Cloud – Store, back up, and manage all your videos, music, and photos and access them anytime without paying any monthly fees.
- Storage Purpose-Built for Data Security – A NAS designed to keep your data safe, the LS200 features a closed system to reduce vulnerabilities from 3rd party apps and SSL encryption for secure file transfers.
- Back Up Multiple Computers & Devices – NAS Navigator management utility and PC backup software included. NAS Navigator 2 for macOS 15 and earlier. You can set up automated backups of data on your computers.
Self-managed Linux or other server
Confirm that an SSH server is installed, enabled, and listening on the intended port. The exact installation and service-management steps depend on the operating system and distribution; there is no single command that applies to every home server. Check the operating system’s current documentation rather than applying NAS menu instructions to a general-purpose server.
SSH into your NAS or server from the home network
- Find the host’s private address. Look in its network settings or your router’s connected-device list. A private address often resembles
192.168.1.50, but use the address actually assigned to your host. - Open an SSH-capable terminal. On a system with the OpenSSH client, run
ssh username@192.168.1.50, replacing the example username and address with your own. Windows also supports SSH-capable terminals; QNAP’s instructions describe PuTTY as another client option. - Specify a non-default port if the host uses one. Run
ssh -p PORT username@192.168.1.50, replacingPORT, the username, and address with the host’s configured values. - Authenticate as an allowed user. Follow the prompt and use an account and authentication method permitted by the NAS or server. For example, QTS 5.2 limits remote SSH logins to administrators.
On first connection, the SSH client may ask whether to trust the server’s host key. Verify the key or its fingerprint through a trusted method before accepting it, especially if you did not expect the prompt or the key has changed. OpenSSH documents its client and command-line options in the ssh manual.
Rank #2
- Value NAS with RAID for centralized storage and backup for all your devices. Check out the LS 700 for enhanced features, cloud capabilities, macOS 26, and up to 7x faster performance than the LS 200.
- Connect the LinkStation to your router and enjoy shared network storage for your devices. The NAS is compatible with Windows and macOS*, and Buffalo's US-based support is on-hand 24/7 for installation walkthroughs. *Only for macOS 15 (Sequoia) and earlier. For macOS 26, check out our LS 700 series.
- Subscription-Free Personal Cloud – Store, back up, and manage all your videos, music, and photos and access them anytime without paying any monthly fees.
- Storage Purpose-Built for Data Security – A NAS designed to keep your data safe, the LS200 features a closed system to reduce vulnerabilities from 3rd party apps and SSL encryption for secure file transfers.
- Back Up Multiple Computers & Devices – NAS Navigator management utility and PC backup software included. NAS Navigator 2 for macOS 15 and earlier. You can set up automated backups of data on your computers.
SSH into your home server while away
A successful LAN connection does not make the host reachable from the internet. Home routers typically block inbound connections from outside, so a remote device needs a private route into the home network or to the host. QNAP recommends establishing a VPN tunnel first, then connecting to the NAS using its LAN IP address; its support article says the NAS need not be exposed directly to the public internet. QNAP: How to remotely access my QNAP NAS over the Internet.
The Tool Desk
Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →Outbyte PC Repair FREEClear out junk files and repair common Windows errorsFree Scan →Use a VPN you already have
- Set up and authorize a VPN connection that gives your remote device access to the home network or the NAS.
- Connect the computer or phone to that VPN while away from home.
- Use the NAS’s private IP address and SSH port as you would on the LAN.
VPN products and router configurations differ. Confirm that the VPN permits access to the NAS’s network and that its address and firewall rules allow the connection.
Rank #3
- Value NAS with RAID for centralized storage and backup for all your devices. Check out the LS 700 for enhanced features, cloud capabilities, macOS 26, and up to 7x faster performance than the LS 200.
- Connect the LinkStation to your router and enjoy shared network storage for your devices. The NAS is compatible with Windows and macOS*, and Buffalo's US-based support is on-hand 24/7 for installation walkthroughs. *Only for macOS 15 (Sequoia) and earlier. For macOS 26, check out our LS 700 series.
- Subscription-Free Personal Cloud – Store, back up, and manage all your videos, music, and photos and access them anytime without paying any monthly fees.
- Storage Purpose-Built for Data Security – A NAS designed to keep your data safe, the LS200 features a closed system to reduce vulnerabilities from 3rd party apps and SSL encryption for secure file transfers.
- Back Up Multiple Computers & Devices – NAS Navigator management utility and PC backup software included. NAS Navigator 2 for macOS 15 and earlier. You can set up automated backups of data on your computers.
Use a private overlay such as Tailscale
Install and activate Tailscale on both the SSH client and the home server or NAS, and ensure the tailnet policy authorizes the connection. Then connect using the host’s Tailscale IP or MagicDNS name, for example ssh username@100.64.0.1 or ssh username@device. Those are illustrative values; use the actual address or name and a permitted account. See Tailscale SSH and Tailscale CLI.
Choose the SSH authentication model
Tailscale provides two distinct ways to combine SSH with its private network. Choose based on whether you want to keep the host’s ordinary SSH authentication or have Tailscale manage SSH identity and authorization.
Rank #4
- Entry-level NAS Personal Storage:UGREEN NAS DH2300 is your first and best NAS made easy. It is designed for beginners who want a simple, private way to store videos, photos and personal files, which is intuitive for users moving from cloud storage or external drives and move away from scattered date across devices. This entry-level NAS 2-bay perfect for personal entertainment, photo storage, and easy data backup (doesn't support Docker or virtual machines).
- Set Your Devices Free, Expand Your Digital World: This unified storage hub supports massive capacity up to 64TB.*Storage drives not included. Stop Deleting, Start Storing. You can store 22 million 3MB images, or 2 million 30MB songs, or 43K 1.5GB movies or 67 million 1MB documents! UGREEN NAS is a better way to free up storage across all your devices such as phones, computers, tablets and also does automatic backups across devices regardless of the operating system—Window, iOS, Android or macOS.
- The Smarter Long-term Way to Store: Unlike cloud storage with recurring monthly fees, a UGREEN NAS enclosure requires only a one-time purchase for long-term use. For example, you only need to pay $459.98 for a NAS, while for cloud storage, you need to pay $719.88 per year, $2,159.64 for 3 years, $3,599.40 for 5 years. You will save $6,738.82 over 10 years with UGREEN NAS! *NAS cost based on DH2300 + 12TB HDD; cloud cost based on 12TB plan (e.g. $59.99/month).
- Blazing Speed, Minimal Power: Equipped with a high-performance processor, 1GbE port, and 4GB LPDDR4X RAM, this NAS handles multiple tasks with ease. File transfers reach up to 125MB/s—a 1GB file takes only 8 seconds. Don't let slow clouds hold you back; they often need over 100 seconds for the same task. The difference is clear.
- Let AI Better Organize Your Memories: UGREEN NAS uses AI to tag faces, locations, texts, and objects—so you can effortlessly find any photo by searching for who or what's in it in seconds. It also automatically finds and deletes similar or duplicate photo, backs up live photos and allows you to share them with your friends or family with just one tap. Everything stays effortlessly organized, powered by intelligent tagging and recognition.
| Setup | How you reach the host | Who handles SSH authentication and access | Considerations |
|---|---|---|---|
| Traditional SSH over a VPN or Tailscale | Use the host’s private LAN address over a VPN, or its Tailscale IP or MagicDNS name over Tailscale. | The host’s normal SSH server and its configured keys or passwords; network access is provided by the VPN or overlay. | Useful when you need to preserve existing SSH keys, account rules, or server configuration. |
| Tailscale SSH | Connect to an authorized device on the tailnet using its name or address. | Tailscale uses tailnet identity and access policies for SSH authentication and authorization. | It changes the SSH authentication model. Tailscale notes it may not fit some multi-user setups or configurations that rely on restricted commands. |
Do not assume that enabling Tailscale alone enables Tailscale SSH: the host configuration and tailnet access policy must support the chosen mode. Follow the current Tailscale SSH setup documentation.
Crashes, No Sound, or Screen Glitches?
Random freezes, missing sound and display glitches usually trace back to one bad driver. Find and replace yours safely.Free scan · under a minutePC Slower Than It Used to Be?
A free scan shows the junk files, broken settings and background clutter dragging Windows down - then fixes them in one click.Free scan · Windows 10 & 11Why SSH works on your LAN but not from outside
On the LAN, the client can reach the server’s private address directly. Away from home, that private address is not ordinarily reachable over the public internet, and the home router typically blocks unsolicited inbound connections. Connect through a VPN or private overlay first; a LAN address by itself does not create remote access. QNAP explains this network behavior and recommends a VPN-first approach in its remote-access guidance.
Quick Recap
Best Value
- Value NAS with RAID for centralized storage and backup for all your devices. Check out the LS 700 for enhanced features, cloud capabilities, macOS 26, and up to 7x faster performance than the LS 200.
- Connect the LinkStation to your router and enjoy shared network storage for your devices. The NAS is compatible with Windows and macOS*, and Buffalo's US-based support is on-hand 24/7 for installation walkthroughs. *Only for macOS 15 (Sequoia) and earlier. For macOS 26, check out our LS 700 series.
- Subscription-Free Personal Cloud – Store, back up, and manage all your videos, music, and photos and access them anytime without paying any monthly fees.
- Storage Purpose-Built for Data Security – A NAS designed to keep your data safe, the LS200 features a closed system to reduce vulnerabilities from 3rd party apps and SSL encryption for secure file transfers.
- Back Up Multiple Computers & Devices – NAS Navigator management utility and PC backup software included. NAS Navigator 2 for macOS 15 and earlier. You can set up automated backups of data on your computers.
Keep remote SSH access private
- Do not treat router port forwarding to the SSH port as the default remote-access method. QNAP warns that exposing SSH can attract automated scans and recommends using a VPN before connecting to the NAS.
- Allow only the users and devices that need access through the VPN, overlay policy, and host account configuration.
- Use the correct host address and port, and keep the NAS or server’s software maintained under the vendor’s guidance.
- If you already have public SSH forwarding configured, remove it if it is not needed and verify remote access still works through the private connection.

