[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-10-15 Thread Launchpad Bug Tracker
[Expired for ufw (Ubuntu) because there has been no activity for 60 days.] ** Changed in: ufw (Ubuntu) Status: Incomplete => Expired -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ufw in Ubuntu.

[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-08-16 Thread Jamie Strandboge
Recall that ufw uses connection tracking so if you add a deny rule, you may need to expire the connection tracking. One way to do this is to run: `conntrack -D -d ` (see man conntrack for details). -- You received this bug notification because you are a member of Ubuntu Touch seeded packages,

[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-08-11 Thread Mahdi Activ.
It is true that DEFAULT_OUTPUT_POLICY="ACCEPT" but I have blocked either 443 and 80 port in rules. So I shouldn't be able to surf the web (without proxy) However, thank you so much for hot-fix you offered, it solved my problem for bug report concern 'ufw reload' should do the same (but I'm not

[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-08-07 Thread Jamie Strandboge
/etc/default/ufw has: DEFAULT_OUTPUT_POLICY="ACCEPT" This means that all outgoing traffic is allowed. If you would like to change that, you can use: $ sudo ufw deny outgoing This will make it more difficult for you to manage the firewall since you'll have to add rules like: $ sudo ufw allow

[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-08-06 Thread Mahdi Activ.
You have not read description fully. After running `ufw reload` rules should restore completely to iptables but it doesn't happen in complete manner. ** Changed in: ufw (Ubuntu) Status: Invalid => New -- You received this bug notification because you are a member of Ubuntu Touch seeded

[Touch-packages] [Bug 1938005] Re: ufw ignores rules

2021-08-06 Thread Jamie Strandboge
Thank you for the bug report. You mentioned that the problem happens after running `iptables -F`. This command removes all the rules from the firewall (see man iptables) so it would be expected that the firewall would not work correctly after running this. I'm going to mark this as Invalid, but