[ubuntu-hardened] ufw package integration
jamie at canonical.com
Fri Sep 5 16:12:19 BST 2008
On Thu, 04 Sep 2008, James Dinkel wrote:
> I would say leave the ports open and leave the profile files. Leave it up
> to the user to manage the firewall. If the package is removed, it's not
> going to be listening on those ports any more anyway.
This is almost what happens. The profile files are conffiles, so they
are removed on purge. However, users can still a) see the application
rule via 'ufw status' and b) still delete the application rule by using
the profile name.
Ubuntu Security Engineer | http://www.ubuntu.com/
Canonical Ltd. | http://www.canonical.com/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Size: 189 bytes
Desc: Digital signature
Url : https://lists.ubuntu.com/archives/ubuntu-hardened/attachments/20080905/634b16f8/attachment-0001.pgp
More information about the ubuntu-hardened