I note that the password requirements of the management site aren't really up to date with modern requirements. It might be worthwhile to read a summary of the NIST password guidelines here:
Key points:
- get rid of the complexity requirements in favour of longer passwords.
- implement multifactor authentication
It would be nice if the HE could accept hardware keys as a second factor. Since you have linux under the hood, it should be fairly easy to add the second factor to improve hub security.