Thanks for the reply.
Well... I absolutely had done this
. It is best practice to have a separate ssh user account? What if I need to perform sudo operations via ssh? Or do you just not do that? Surely it's no different than the admin account have access to the web gui?
Recommend? I don't know but I've personally thought it a good practice. I'd somehow your server (or clients) are compromised, they'll need to figure out two separate passwords to do any real damage. Most of the threads we see here over the years where "OMV got hacked"... It was almost always the client that was hacked, not OMV. Making them guess two passwords to do any real damage could be a big help.
As for you using a Mac... Everything in my house is Linux, and I still do this.