Add no opening a found ufw rule already answers, since ufw takes rules differing only in comment for one, as captured on a lab machine (hq ADR 0103)

This commit is contained in:
2026-09-22 18:06:47 +02:00
parent da65f84c45
commit 52e139d96f
6 changed files with 433 additions and 28 deletions
+37
View File
@@ -0,0 +1,37 @@
$ ufw allow 22/tcp
Rules updated
Rules updated (v6)
$ ufw --force enable
Firewall is active and enabled on system startup
$ ufw route allow 8080/tcp
Rule added
Rule added (v6)
$ ufw route allow proto tcp to any port 8080 comment 'mesh-host adoption.opening-tcp-8080-forwarded 1a2b3c4d'
Rule updated
Rule updated (v6)
$ ufw allow 5671/tcp
Rule added
Rule added (v6)
$ ufw allow proto tcp to any port 5671 comment 'mesh-host adoption.opening-tcp-5671-incoming 1a2b3c4d'
Rule updated
Rule updated (v6)
$ ufw allow in on mesh0 to any port 5432 proto tcp comment 'operator note'
Rule added
Rule added (v6)
$ ufw allow in on mesh0 proto tcp to any port 5432 comment 'mesh-host adoption.opening-tcp-5432-incoming 1a2b3c4d'
Rule updated
Rule updated (v6)
$ ufw show added
Added user rules (see 'ufw status' for running firewall):
ufw allow 22/tcp
ufw route allow 8080/tcp comment 'mesh-host adoption.opening-tcp-8080-forwarded 1a2b3c4d'
ufw allow 5671/tcp comment 'mesh-host adoption.opening-tcp-5671-incoming 1a2b3c4d'
ufw allow in on mesh0 to any port 5432 proto tcp comment 'mesh-host adoption.opening-tcp-5432-incoming 1a2b3c4d'
$ ufw route delete allow 8080/tcp comment 'mesh-host adoption.opening-tcp-8080-forwarded 1a2b3c4d'
Rule deleted
Rule deleted (v6)
$ ufw show added
Added user rules (see 'ufw status' for running firewall):
ufw allow 22/tcp
ufw allow 5671/tcp comment 'mesh-host adoption.opening-tcp-5671-incoming 1a2b3c4d'
ufw allow in on mesh0 to any port 5432 proto tcp comment 'mesh-host adoption.opening-tcp-5432-incoming 1a2b3c4d'
+16
View File
@@ -0,0 +1,16 @@
Added user rules (see 'ufw status' for running firewall):
ufw allow 22/tcp
ufw allow 9200
ufw allow from 192.0.2.0/24 to any port 9300 proto tcp
ufw allow in on eth0 to any port 9301 proto tcp
ufw deny 9400/tcp
ufw limit 2222/tcp
ufw allow 9500:9510/tcp
ufw route allow in on mesh0 out on docker0 to any port 8082 proto tcp
ufw allow to 192.0.2.1 port 9600 proto tcp
ufw allow 9700/udp
ufw route allow in on mesh0 to any port 8083 proto tcp
ufw allow 9900/tcp
ufw allow 80,443/tcp
ufw allow in on mesh0 to any port 5432 proto tcp
ufw route allow 8080/tcp