> In the extracted rules files, port '32769' is not present you probably
> should allow traffic to that port.
> I couldn't read the policy file so if you have a policy that does that
> you can ignore this.
I have this policy file:

fw      net     ACCEPT
fw      dock    ACCEPT
dock    all     ACCEPT
net     all     DROP    info
all     all     REJECT  info


All ports from docker should be accepted by this.





>> - What version of Shorewall are you using?

shorewall version
5.2.3.3


- What distro are you using?
Mageia 7 Linux 


> Note that support for Docker in Shorewall is to be removed eventually.

Does this mean that a docker webserver url cannot be seen in the browser?


> For now the prefered way is to disable firewall support in Docker and
> the counterpart facility in Shorewall and to let Shorewall interact with
> iptables.

Must I use the Docker "--iptables=false" parameter?


- Franz




_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to