×
UNIX.COM Login
Username:
Password:  
Show Password






👤


UNIX for Beginners Questions & Answers

If you're not sure where to post a Unix or Linux question, post it here. All unix and Linux beginners welcome in this forum!

Firewall config

Tags
firewall, gufw, ip range

👤 Login to reply

 
Thread Tools Search this Thread Display Modes
    #1  
Old 12-27-2017
benc benc is offline
Registered User
 
Join Date: Dec 2017
Last Activity: 8 January 2018, 9:20 PM EST
Posts: 3
Thanks: 0
Thanked 0 Times in 0 Posts
Firewall config

I'm having a bit of a problem with a firewall configuration. I'm using GUFW.


When I launch firefox and it goes to my home page (DuckDuckGo), the browser makes several connections. For example, the output of "ss -prtu":


Code:
tcp    ESTAB      0      0        10.8.8.22:32774   ec2-176-34-131-233.eu-west-1.compute.amazonaws.com:https  users:(("firefox",pid=6371,fd=146))

tcp   ESTAB      0       0        10.8.8.22:52114   ec2-54-229-110-205.eu-west-1.compute.amazonaws.com:https  users:(("firefox",pid=6371,fd=98))

As an experiment, I want to block both incoming and outgoing connections in the range 10.8.0.0/16. I added rules to GUFW and the logs reflect this:



Code:
[12/27/2017 03:37:33 AM] Editing rule (Adding): myrule | /usr/sbin/ufw deny out from any to 10.8.0.0/16 > Rule added

[12/27/2017 03:37:06 AM] Editing rule (Adding): myrule | /usr/sbin/ufw deny in from 10.8.0.0/16 to any > Rule added

I exited Firefox, then restarted firefox and it went to it's home page as normal. In a terminal, I typed ss -prtu and my firewall commands apparently failed because this comes up:



Code:
tcp   ESTAB      0      0                                   10.8.8.22:39908                ec2-176-34-135-167.eu-west-1.compute.amazonaws.com:https                 users:(("firefox",pid=9687,fd=101))

tcp   ESTAB      0      0                                   10.8.8.22:42292                a88-221-134-48.deploy.akamaitechnologies.com:http                  users:(("firefox",pid=9687,fd=6))

tcp   ESTAB      0      0                                   10.8.8.22:46624                ec2-52-72-108-51.compute-1.amazonaws.com:https                 users:(("firefox",pid=9687,fd=94))

tcp   ESTAB      0      0                                   10.8.8.22:46626                ec2-52-72-108-51.compute-1.amazonaws.com:https                 users:(("firefox",pid=9687,fd=95))

Any idea what I'm doing wrong?

.

Last edited by benc; 12-28-2017 at 08:05 AM.. Reason: code tags
Sponsored Links
👤 Login to reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
(VS 2008) New build config looking files from other folder build config SA_Palani Windows & DOS: Issues & Discussions 1 01-20-2017 04:43 PM
Apache virtual host config vs global config problem freebird8z Red Hat 1 04-05-2013 10:33 AM
Shell script that will compare two config files and produce 2 outputs 1)actual config file 2)report muraliinfy04 Shell Programming and Scripting 4 11-04-2010 07:30 AM
parsing config file to create new config files clazzic Shell Programming and Scripting 1 12-27-2009 02:06 PM



All times are GMT -4. The time now is 12:25 PM.

Unix & Linux Forums Content Copyright©1993-2018. All Rights Reserved.