as the docker image may be aimed at users looking for a working out-of-the-box solution, we should add instructions how to secure/lock-down the host system, as the security of this service may be compromised by gaining access to the host (which will have a public IP).
the hardening cannot be implemented in this image, so only provide the instructions.
Use-case:
Some materials: https://www.linode.com/docs/networking/vpn/set-up-a-hardened-openvpn-server