ssh-audit
ufw-docker
Our great sponsors
ssh-audit | ufw-docker | |
---|---|---|
21 | 65 | |
3,117 | 3,774 | |
- | - | |
8.5 | 0.0 | |
8 days ago | about 1 year ago | |
Python | Shell | |
MIT License | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ssh-audit
-
Terrapin Attack for prefix injection in SSH
No. Mitigations are available now. Follow the recommendations from ssh-audit (master version). [0]
0. https://github.com/jtesta/ssh-audit
- SSH-audit: SSH server and client security auditing
- Quick/simple question checking for SSH vulnerabilities
- Why so many bots?
-
How to secure my self-hosted website?
Match Address 10.0.0.0/8,172.16.0.0/12,192.168.0.0/16 PasswordAuthentication yes ```` You may audit your SSH service by https://github.com/jtesta/ssh-audit
-
Why does my SSH private key still work after changing some bytes? (2016)
Off topic: audit tool for OpenSSH config files.
Posted here because SSH algorithms are a moving target.
https://github.com/jtesta/ssh-audit/tree/e50ac5c84d46e902e02...
-
SFTP (SSH) Cipher Sanity Check
In addition to ssllabs, I'll recommend jtesta's ssh-audit.py
ufw-docker
-
Swag reverse proxy, fail2ban not working
I am running ubuntu server 22.04 LTS and have fail2ban running on the host. This works great, no issues and IPs get banned for the rules I have in place. I am using UFW and have updated my after.rules for docker based on the recommendations here.
-
How to close Docker ports
I use this without problems for Long time, https://github.com/chaifeng/ufw-docker
-
Docker Overrules UFW
[2016]
A solution is known and formed detailed here: https://github.com/chaifeng/ufw-docker
- DHCP is not blocked by ufw/iptables
-
Docker networking seems to have completely broken, can't really explain it all in the title.
In any case, maybe try to compare the blocked port ranges with the ports you are using. Did you see this https://github.com/chaifeng/ufw-docker
-
Ongoing attacks on Synology NAS: how to protect your NAS
https://github.com/chaifeng/ufw-docker For example.
-
Security on ubuntu
ufw is nice, when you are on public networks. And very nice if you are playing with SSH-Server, Docker,.. on your notebook. Couse you write coding, I want to add this, if you use docker.
-
Securing a VPS running docker
You can use use this for a more manual approach: https://github.com/chaifeng/ufw-docker
-
Gluetun/QBitTorrent Web UI issues
Sorry that's about the extent of my docker network knowledge. One other thing you can check though - are you running ufw on the host? If so you can try updating the config with ufw-docker.
-
What OS for NUC with Plex, Arrs, Home Assistant & Frigate
Hi! I'm also new to the homelab category, but I have a bit of experience. I'm currently running Ubuntu 22.04, and the only problem what I had is docker containers not working with ufw. (Fix can be found here: https://github.com/chaifeng/ufw-docker) I've been running my stuff in Docker containers, and it worked pretty well for me. So if you are also new to this, I'd definetly recommend Ubuntu for its simplicity. (Also tons of already great tutorials on how to do literally anything)
What are some alternatives?
Pritunl - Enterprise VPN server
Nginx Proxy Manager - Docker container for managing Nginx proxy hosts with a simple, powerful interface
testssl.sh - Testing TLS/SSL encryption anywhere on any port
podman - Podman: A tool for managing OCI containers and pods.
yubikey-agent - yubikey-agent is a seamless ssh-agent for YubiKeys.
ansible-role-firewall - Ansible Role - iptables Firewall configuration.
tinyssh - TinySSH is small server (less than 100000 words of code)
csf-post-docker - CSF with support for Docker
mistborn
firehol - A firewall for humans...
easy-admin - Scripts for easy system administration
tailscale - The easiest, most secure way to use WireGuard and 2FA.