Comment 1 for bug 1820350

Revision history for this message
Jamie Strandboge (jdstrand) wrote : Re: ufw allows certain incoming packets when policy is set to deny

Thank you for you report. Please note that for usability a default ruleset is put in use by design and documented in the ufw(8) man page. Users are free to fine-tune those defaults for site-specific needs as described in the ufw-framework(8) man page. As a result option 'a' is out of scope. Option 'b' does make sense and is something that can be looked at with 'status verbose' (implementation-wise it might make sense to check if all the defaults are in use and if they are, mention those defaults, and if they are not, mention that custom rules are in effect. I'm not sure yet how this should be represented in the UI.