From 32e9a423f10e61b00ca74ece641e0e9ca8669b58 Mon Sep 17 00:00:00 2001 From: Craig Jennings Date: Tue, 24 Oct 2023 15:51:10 -0500 Subject: moving the broken ufw protocol comments above the code --- archsetup | 20 +++++++++++++------- 1 file changed, 13 insertions(+), 7 deletions(-) diff --git a/archsetup b/archsetup index 5e48437..8bf362d 100755 --- a/archsetup +++ b/archsetup @@ -382,14 +382,20 @@ essential_services() { action="configuring ufw to deny by default" && display "task" "$action" ufw default deny incoming >> "$logfile" 2>&1 || error "error" "$action" + # note on the protocols + # "80,443,8080/tcp" # http and https traffic + # "9040,9050,9051,9053,9119/tcp" # tor network + # "55353/udp" # DNS + # "22000/tcp" "22000/udp" "21027/udp" # syncthing + for protocol in \ - "80,443,8080/tcp" \ # http and https traffic - "9040,9050,9051,9053,9119/tcp" \ # tor network - "IMAP" "IMAPS" \ # IMAP email - "55353/udp" \ # DNS - "ssh" \ # secure shell protocol - "22000/tcp" "22000/udp" "21027/udp" \ # syncthing - "transmission" \ # bit-torrent protocol + "80,443,8080/tcp" \ + "9040,9050,9051,9053,9119/tcp" \ + "IMAP" "IMAPS" \ + "55353/udp" \ + "ssh" \ + "22000/tcp" "22000/udp" "21027/udp" \ + "transmission" \ ; do action="adding ufw rule to allow $protocol" && display "task" "$action" (ufw allow $protocol >> "$logfile" 2>&1) || error "error" "$action" "$?" -- cgit v1.2.3