Public bug reported: Using Ubuntu Hardy Heron as server and ufw as firewall. I have found that ufw is started before the iface is configured, so it's ok, when your iface is enable, all your firewall rule is loaded.
*But* ufw is stopped before the iface ! So if you have a service running and locked by a rule in ufw (sample: ssh is allowed only for a range of IP), when you are rebooting your service is not behind a firewall until your iface is disable. This is very insecure when you have an other services that take long time to stop and it's between the halt of ufw and iface disable. ** Affects: ufw (Ubuntu) Importance: Undecided Status: New -- ufw must be stopped after iface is powered off https://bugs.launchpad.net/bugs/298736 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs