Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Consider replacing UFW firewall with basic iptables rules #181

Open
jessuppi opened this issue Jan 15, 2023 · 2 comments
Open

Consider replacing UFW firewall with basic iptables rules #181

jessuppi opened this issue Jan 15, 2023 · 2 comments

Comments

@jessuppi
Copy link
Member

A user on our Discord server suggested replacing UFW firewall with basic iptables could improve the simplicity and reliability of the configuration process.

I'm not sure if this would be a good idea or not, but it's certainly something we should consider.

Configuring UFW has been a challenge in SlickStack for a long time...

@skygunner
Copy link

How about csf.
ufw doesn't support block a country's ip via country code.

@jessuppi
Copy link
Member Author

@skygunner Thanks for the feedback, I don't thinks CSF is in the Ubuntu apt packages. And for stability reasons, SlickStack has always used the default/LTS packages available.

Plus, personally I'm just not a fan of bundling massive lists of constantly changing IP ranges. I think that's one of the features that really belongs on a WAF like Cloudflare, it's something that large companies can maintain much better than a small team... actually I don't even think CSF has any public GitHub repo either.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

2 participants