

If you’re hosting static content it’s a lot easier. If you’ve only opened ports 80/443 and don’t have any kind of user input or scripting you’re (probably) fine. Most likely you’d get DOS’d before someone would hack you. Assuming you’re keeping your software up to date.
In general though limit what is exposed to the Internet. In this case don’t open any extra ports.
If you want to be more secure (likely overkill for most threat models), treat your webserver like it’s always infected. Don’t do anything else important on it, and keep it segmented from your other computers with firewall rules.
Realistically no one is going to bother to hack you unless you’re posting shit that makes people angry. You’re mostly going to get prodded by bots looking for known vulnerabilities in Apache or the like, and you can stay protected with frequent updates.
If you’re hosting something dynamic or with code like PHP or something with user accounts and the like, then it’s slightly more complicated.
I don’t support mass deportations but I understand why people do. Id prefer amnesty (especially for children and families who have been here for years) followed by eased legal immigration processes to make it easier to come here legally.
What bothers me recently though isn’t mass deportations themselves, it’s the way they are being done. Unmarked officers, no oversight, sketchy warrants that prey on people’s lack of knowledge of their rights, strong arming local organizations and governments to hand over info, punishing people who are trying to fix their status or lost it on a technicality, etc.