Scheduled Maintenance: We are aware of an issue with Google, AOL, and Yahoo services as email providers which are blocking new registrations. We are trying to fix the issue and we have several internal and external support tickets in process to resolve the issue. Please see: viewtopic.php?t=158230

 

 

 

best firewall option on Debian 10 desktop

If none of the specific sub-forums seem right for your thread, ask here.
Post Reply
Message
Author
vryni
Posts: 58
Joined: 2017-06-16 05:12
Been thanked: 1 time

best firewall option on Debian 10 desktop

#1 Post by vryni »

With Debian 9 i used to install UFW and access the before.rules file
to make some minor settings changes which gave me a sense of being firewalled.

Having recently installed Debian 10, I've just learned that apparmor is preinstalled
and running by deault.
Beyond that, i am clueless

Should i spend time to learn apparmor settings ?
What is my best option to having my desktop reasonably firewalled ASAP ?

andre@home
Posts: 398
Joined: 2011-10-02 08:00

Re: best firewall option on Debian 10 desktop

#2 Post by andre@home »

apparmor seems to to work on application level, similar to Zonealarm on Windows.
iptables or nftables : close normally all ports (=with the starting rule) and then you add which port(s) must be open. Although most programs have there own port (designed per protocol like ftp on port 21).
So incomparable, you wil;l have to decide.
On Linux I prefer the route for iptables or nftables . All ports are closed, unless..... but its only my preference.

User avatar
Head_on_a_Stick
Posts: 14114
Joined: 2014-06-01 17:46
Location: London, England
Has thanked: 81 times
Been thanked: 133 times

Re: best firewall option on Debian 10 desktop

#3 Post by Head_on_a_Stick »

Apparmor is not a firewall.
andre@home wrote:close normally all ports
All ports are closed by default and are not opened unless a process is listening on them.

@OP: why do you think you need a firewall?
deadbang

andre@home
Posts: 398
Joined: 2011-10-02 08:00

Re: best firewall option on Debian 10 desktop

#4 Post by andre@home »

Indeed as Zonealarm is also not a firewall,.... should have added 1 word.
On Linux I prefer the route for iptables or nftables . All ports are closed, unless.....
I already mentioned it, 1 sentence further

Post Reply