UFW - Uncomplicated Firewall¶
ufw uncomplicated firewall is an easy frontend for iptables.
Installation¶
apt install -y ufw
Firewall start/stop¶
ufw enableufw disable
Adding rules¶
ufw allow|deny|reject SERVICEufw allow ssh
ufw allow|deny [proto <protokoll>] [from <adresse> [port <port>]] [to <addresse> [port <port>]]ufw allow proto tcp from any to 123.456.78.90 port 22ufw allow 80/tcp
Block connections to a network interface:
ufw deny in on eth0 from 15.15.15.51[^digoc]
Allow incoming SSH from specific IP address or subnet:
ufw allow from 15.15.15.0/24 to any port 22
Add default rules¶
ufw default allowufw default deny
List existing rules¶
ufw statusufw status numbered
Delete existing rules¶
ufw delete no.– afterufw status numberedwas issuedufw delete allow 80/tcp
Source¶
[^digoc]: UFW essentials at digitalocean.com