[DiscordArchive] Did you move your docker host to a DMZ or something?
[DiscordArchive] Did you move your docker host to a DMZ or something?
Archived author: Foe • Posted: 2023-01-17T21:55:22.077000+00:00
Original source
That will kill all remote access to the server and drop all running connections
Archived author: Foe • Posted: 2023-01-17T21:55:37.428000+00:00
Original source
You'll then have to
iptables -I INPUT -p tcp --dport 22 -j ACCEPT
for ssh
Archived author: Foe • Posted: 2023-01-17T21:55:47.688000+00:00
Original source
That would give you a basic, standard deny-all setup
Archived author: Foe • Posted: 2023-01-17T21:56:00.316000+00:00
Original source
then you'd have to forward the ports that you need
Archived author: Foe • Posted: 2023-01-17T21:56:31.746000+00:00
Original source
including SSH, so you could lock yourself out
Archived author: Foe • Posted: 2023-01-17T21:57:09.570000+00:00
Original source
sudo iptables -S
check if there's any conflicting rules
Archived author: notsure • Posted: 2023-01-17T22:41:47.135000+00:00
Original source
Those iptables rules don’t work with docker - they have to be added to the DOCKER-USER chain (somehow, still trying to figure it out)
Archived author: mynameismeat • Posted: 2023-01-17T22:57:57.962000+00:00
Original source
you might be interested in ufw. much simpler than bare iptables. It might be the default for ubuntu?
https://wiki.ubuntu.com/UncomplicatedFirewall
Archived author: Foe • Posted: 2023-01-17T23:16:39.770000+00:00
Original source
They should, your connection endpoint is the docker host, that's where iptables should stop the external traffic from getting in
Archived author: mynameismeat • Posted: 2023-01-17T23:26:12.686000+00:00
Original source
you can also make sure docker isn't exposing the port as long as the worldserver and authserver are on the same docker network