From 5b6001da4905fe1ee47c4a39d730c2aa44a98b57 Mon Sep 17 00:00:00 2001 From: Ricardson Williams Date: Sun, 28 Jul 2013 12:03:23 -0500 Subject: network/ufw: Added (Uncomplicated Firewall) Signed-off-by: Erik Hanson --- network/ufw/README | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) create mode 100644 network/ufw/README (limited to 'network/ufw/README') diff --git a/network/ufw/README b/network/ufw/README new file mode 100644 index 0000000000..a961024e11 --- /dev/null +++ b/network/ufw/README @@ -0,0 +1,24 @@ +Ufw (Uncomplicated Firewall) is program for managing a netfilter firewall. +It provides a command line interface and aims to be uncomplicated and easy +to use. It is not intended to provide a complete firewall functionality via +its command interface, but provides an easy way to add or remove simple rules. + +To run ufw at boot you can add the following code to rc.local file: + +if [ -x /etc/init.d/ufw ]; then +/etc/init.d/ufw start +fi + +Rules can be added with ports, services or application names. To specify an +application you need a profile stored under /etc/ufw/applications.d directory. + +To add a profile create a app_name.INI file as the following: + +[Samba] +title=File/printer server for Unix +description=Samba is a collection of programs that implements the SMB/CIFS protocol for unix systems. +ports=137,138/udp|139,445/tcp + +Then, for example you can run: +ufw allow from xx.xx.xx.xx app samba + -- cgit v1.2.3