I'm not using the default port on one machine, but I do on the other. With key based login, is it really necessary?
Non-standard ports don't stop dedicated attacks, but they do reduce noise that can obfuscate a dedicated attack and can reduce your exposure to uncommitted attackers.