This commit is contained in:
julien 2025-01-09 22:43:47 +01:00
parent 56cccfc2ec
commit 7efaa96160

30
ufw-config.md Normal file
View File

@ -0,0 +1,30 @@
# UFW config
To enable UFW :
```
# dinitctl enable ufw
# ufw enable
```
Deny all incoming traffic by default, allow outgoing :
```
# ufw default deny incoming
# ufw default allow outgoing
```
Open needed ports, here an example with `SSH` :
```
# ufw allow ssh
```
> Common ports are `ssh`, `http`, `https`, `dns`, etc...
You may also limit SSH connections against brute-force :
```
# ufw limit ssh
```
Then reload UFW :
```
# ufw reload
```