Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Odd rule defaults that are not configurable. #110

Open
animalillo opened this issue Apr 2, 2024 · 0 comments
Open

Odd rule defaults that are not configurable. #110

animalillo opened this issue Apr 2, 2024 · 0 comments

Comments

@animalillo
Copy link

This role adds by default ping and ntp on INPUT chains

ACCEPT icmp -- anywhere anywhere
ACCEPT udp -- anywhere anywhere udp spt:ntp

I don't want the machine to answer either ping nor ntp by default on the public interfaces

Another weird thing is that instead of setting the default policy to drop it is adding a drop rule at the end of the chain, wouldn't it be better to change the input policy to drop?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant