Skip to content
This repository has been archived by the owner on Oct 24, 2023. It is now read-only.

[WIP] chore(CIS): enable ufw firewall #1060

Closed
wants to merge 1 commit into from

Conversation

jackfrancis
Copy link
Member

@jackfrancis jackfrancis commented Apr 15, 2019

Reason for Change:

Enforce ufw firewall configuration via VHD + cloud-init

Issue Fixed:

Fixes #987

Requirements:

Notes:

@acs-bot
Copy link

acs-bot commented Apr 15, 2019

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: jackfrancis

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@codecov
Copy link

codecov bot commented Apr 15, 2019

Codecov Report

Merging #1060 into master will increase coverage by <.01%.
The diff coverage is 100%.

@@            Coverage Diff            @@
##           master   #1060      +/-   ##
=========================================
+ Coverage   74.29%   74.3%   +<.01%     
=========================================
  Files         131     131              
  Lines       18261   18265       +4     
=========================================
+ Hits        13567   13571       +4     
  Misses       3912    3912              
  Partials      782     782

@jackfrancis
Copy link
Member Author

FYI this doesn't work as-is. Ostensibly the UFW hardening here is excessive.

@jackfrancis jackfrancis self-assigned this Apr 15, 2019
@mboersma mboersma added the needs-rebase Changes in the target branch require a `git rebase` and `git push -f` label Apr 17, 2019
@stale
Copy link

stale bot commented May 16, 2019

This pull request has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

@stale stale bot added the stale label May 16, 2019
@stale stale bot closed this May 23, 2019
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
approved do-not-merge/work-in-progress needs-rebase Changes in the target branch require a `git rebase` and `git push -f` size/L stale
Projects
None yet
Development

Successfully merging this pull request may close these issues.

CIS 3.6.5 Ensure firewall rules exist for all open ports
3 participants