
This is achieved by using several sets of rules files, which are nothing more than iptables-restore compatible text files. Eg: $ sudo ufw.cmd enableĪs mentioned, the ufw application is capable of doing anything that iptables can do. On Ubuntu Core, simply replace ' ufw' with ' ufw.cmd'. This sets up a default deny (DROP) firewall for incoming connections, with all outbound connections allowed with state tracking. For example, to enable firewall, allow ssh access, enable logging, and check the status of the firewall, perform: $ sudo ufw allow ssh/tcp


The Uncomplicated Firewall ( ufw) is a frontend for iptables and is particularly well-suited for host-based firewalls.

As a result, many frontends for iptables have been created over the years, each trying to achieve a different result and targeting a different audience. iptables provide a complete firewall solution that is both highly configurable and highly flexible.īecoming proficient in iptables takes time, and getting started with netfilter firewalling using only iptables can be a daunting task. The Linux kernel in Ubuntu provides a packet filtering system called netfilter, and the traditional interface for manipulating netfilter are the iptables suite of commands. Available Versions in supported versions of Ubuntu.
