whalewall
ufw-docker
whalewall | ufw-docker | |
---|---|---|
6 | 65 | |
185 | 3,774 | |
- | - | |
7.8 | 0.0 | |
7 days ago | about 1 year ago | |
Go | Shell | |
BSD 3-clause "New" or "Revised" License | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
whalewall
-
Docker developers discuss changes in how ports are to be forwarded into containers
It took me a long time to notice this issue, and I've found this as a possible solution. Working on deploying it, and will see how it goes.
-
Self hosted security recommendations
Look into ufw (or iptables/nftables if you want to go deeper) to restrict outbound network access. Note though that Docker containers won't respect host firewall rules by default, so I created whalewall to easily manage container firewall rules: https://github.com/capnspacehook/whalewall
- Any experience with ufw-docker?
- Whalewall v0.2.0 released
- Whalewall – Easily mange firewall rules for Docker containers
-
Whalewall - easily manage firewall rules for Docker containers
I recently found out that Docker containers ignore any host-based firewall rules by default and wanted a solution to restrict container traffic. This weekend I finally finished a project to do just that: https://github.com/capnspacehook/whalewall
ufw-docker
-
Swag reverse proxy, fail2ban not working
I am running ubuntu server 22.04 LTS and have fail2ban running on the host. This works great, no issues and IPs get banned for the rules I have in place. I am using UFW and have updated my after.rules for docker based on the recommendations here.
-
How to close Docker ports
I use this without problems for Long time, https://github.com/chaifeng/ufw-docker
-
Docker Overrules UFW
[2016]
A solution is known and formed detailed here: https://github.com/chaifeng/ufw-docker
- DHCP is not blocked by ufw/iptables
-
Docker networking seems to have completely broken, can't really explain it all in the title.
In any case, maybe try to compare the blocked port ranges with the ports you are using. Did you see this https://github.com/chaifeng/ufw-docker
-
Ongoing attacks on Synology NAS: how to protect your NAS
https://github.com/chaifeng/ufw-docker For example.
-
Security on ubuntu
ufw is nice, when you are on public networks. And very nice if you are playing with SSH-Server, Docker,.. on your notebook. Couse you write coding, I want to add this, if you use docker.
-
Securing a VPS running docker
You can use use this for a more manual approach: https://github.com/chaifeng/ufw-docker
-
Gluetun/QBitTorrent Web UI issues
Sorry that's about the extent of my docker network knowledge. One other thing you can check though - are you running ufw on the host? If so you can try updating the config with ufw-docker.
-
What OS for NUC with Plex, Arrs, Home Assistant & Frigate
Hi! I'm also new to the homelab category, but I have a bit of experience. I'm currently running Ubuntu 22.04, and the only problem what I had is docker containers not working with ufw. (Fix can be found here: https://github.com/chaifeng/ufw-docker) I've been running my stuff in Docker containers, and it worked pretty well for me. So if you are also new to this, I'd definetly recommend Ubuntu for its simplicity. (Also tons of already great tutorials on how to do literally anything)
What are some alternatives?
ufw-docker-automated - Manage docker containers firewall with UFW!
Nginx Proxy Manager - Docker container for managing Nginx proxy hosts with a simple, powerful interface
trafficjam - A Docker firewall for your reverse proxy network
podman - Podman: A tool for managing OCI containers and pods.
pfDeploy - Deploy your pf configuration in a FreeBSD VM.
ansible-role-firewall - Ansible Role - iptables Firewall configuration.
Moby - The Moby Project - a collaborative project for the container ecosystem to assemble container-based systems
csf-post-docker - CSF with support for Docker
hub - Main repository for crowdsec scenarios/parsers
firehol - A firewall for humans...
tailscale - The easiest, most secure way to use WireGuard and 2FA.