framasky, to random French
@framasky@framapiaf.org avatar

J’ai déjà dû le dire ici, mais j’adore , c’est vraiment un pare-feu simple à configurer 🙂

https://firewalld.org/

larsmb, to random
@larsmb@mastodon.online avatar

Ah, obviously. #docker only gets along with #firewalld if the latter is using the iptables backend (not the higher performing nftables default).
The #iptables backend is depreciated and slated for removal.

And of course there's no error message if configured "incorrectly", just random breakage that one then gets to debug!

I hate computers. I wish I was good enough at something else.

#Linux

gnulinux, to linux German
@gnulinux@social.anoxinon.de avatar

Sicher im Netz unterwegs mit der ufw Firewall

Ich zeige dir, wie du die ufw Firewall unter Linux einrichten kannst, um deinen PC vor Angriffen aus dem Internet zu schützen.

#Ufw #Firewall #SpaceFun #firewalld #TuxWiz #Linux

https://gnulinux.ch/sicher-im-netz-unterwegs-mit-der-ufw-firewall

vwbusguy, (edited ) to random
@vwbusguy@mastodon.online avatar

Pop quiz for . All things being equal, which of these determines the priority of which zone rules get applied if an IP source overlaps:

governa, to random
@governa@fosstodon.org avatar

#Firewalld 2.1 Released with Improved Network Security

https://debugpointnews.com/firewalld-2-1/

rockylinux, to HowTo
@rockylinux@fosstodon.org avatar

Do you know how to set up a secure firewall for your network? Our 'firewalld' tutorial has had good reviews from users. It can walk a beginner through the process of setting up the default Rocky Linux firewall daemon. For users with some previous knowledge of older firewall technologies, the IpTables Guide helps translate that knowledge into the 'firewalld' setup. https://docs.rockylinux.org/guides/security/firewalld-beginners/ #tutorialtuesday #firewalld #howto #linuxtips #documentation

RockyC, to fedora
@RockyC@fosstodon.org avatar

Is it possible to install #gufw on #Fedora 38, because I’m REALLY tired of trying to figure out why #firewalld keeps ignoring anything I put into the “Trusted Zone?”

No, REALLY, I don’t want your help with firewalld. I’m never going to like it. I just want it gone.

coltofox, to ipv6
@coltofox@fox.yt avatar

Have tried a few things in Docker and the OS but still have not managed to get containers properly using IPv6 addresses. :blobfoxconfused:

IPv6 is currently used for inbound (the host's IPv6 address), but I can't do outbound unless I can get it working on the containers.

Does anyone know how to get #IPv6 working properly with #Docker? I'm using #Rocky EL8 with #firewalld in a VM.

Tried:

  • static routing an IPv6 subnet;
  • the forward option in firewalld;
  • intra-zone firewalld ACCEPT policy (public and docker are my firewalld zones);
  • macvlan and ipvlan adapter types (didn't work, presume due to VM networking)
  • bridge adapter type with IPv6
  • proxy_ndp on external interface (this broke all existing inbound IPv6).

Any suggestions would be appreciated.

techsaviours, to AdGuard
@techsaviours@fosstodon.org avatar

A new "Your own extras" is available:

Check the new "Donation list" to support your favourite free and open source software.
It includes all the links with all the listed and we provide.

https://wiki.techsaviours.org/en/extras/donation_list

Still missing links:

governa, to debian
@governa@fosstodon.org avatar
fedops, to fedora
@fedops@fosstodon.org avatar

PSA: if you run 36 or later, check to see if your service is running.

In a recent update they're still distributing a broken tcpcryptd.xml service definition file for which this over 4 year-old bug exists even though there are merge requests for fixes: https://bugzilla.redhat.com/show_bug.cgi?id=1716080

What's really awful is it causes firewalld to not start and you won't notice unless you monitor its state. Ouch. 🤕

ablackcatstail, to linux

The more I am digging in to #linux, the more I am realizing I really need to take the time to grok #iptables. This way I'll understand what tools like #firewalld and #ufw are really doing.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • Durango
  • magazineikmin
  • everett
  • thenastyranch
  • tacticalgear
  • Youngstown
  • mdbf
  • slotface
  • GTA5RPClips
  • rosin
  • InstantRegret
  • kavyap
  • DreamBathrooms
  • megavids
  • modclub
  • ngwrru68w68
  • cisconetworking
  • cubers
  • ethstaker
  • tester
  • khanakhh
  • osvaldo12
  • provamag3
  • anitta
  • Leos
  • normalnudes
  • lostlight
  • All magazines