<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ufw &#8211; 21點情報網</title>
	<atom:link href="https://ailog.tw/lifelog/tag/ufw/feed/" rel="self" type="application/rss+xml" />
	<link>https://ailog.tw/lifelog</link>
	<description></description>
	<lastBuildDate>Sat, 11 Jan 2020 09:42:27 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
	<item>
		<title>Ubuntu 18 防火牆簡易設定</title>
		<link>https://ailog.tw/lifelog/2020/01/11/ubuntu-firewall/</link>
		
		<dc:creator><![CDATA[blackjack]]></dc:creator>
		<pubDate>Sat, 11 Jan 2020 09:42:27 +0000</pubDate>
				<category><![CDATA[3C資訊]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Ubuntu 18]]></category>
		<category><![CDATA[ufw]]></category>
		<guid isPermaLink="false">https://ailog.tw/lifelog/?p=2311</guid>

					<description><![CDATA[Ubuntu也是架設Server常用的Linux作業系統，快跟著小編一起來了解如何設定內建的防火牆軟體吧! [ &#8230; <p class="link-more"><a href="https://ailog.tw/lifelog/2020/01/11/ubuntu-firewall/" class="more-link">閱讀全文<span class="screen-reader-text">〈Ubuntu 18 防火牆簡易設定〉</span></a></p>]]></description>
										<content:encoded><![CDATA[<p>Ubuntu也是架設Server常用的Linux作業系統，快跟著小編一起來了解如何設定內建的防火牆軟體吧!<span id="more-2311"></span></p>
<p>[1]、安裝防火牆軟體(一般來說預設都是有安裝的)<br />
sudo apt-get install ufw<br />
<img decoding="async" class="alignnone size-full wp-image-2322" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-000.png" alt="" width="434" height="73" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-000.png 434w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-000-300x50.png 300w" sizes="(max-width: 434px) 100vw, 434px" /></p>
<p>[2]、不限制IP來源的狀況下開放服務Port<br />
sudo ufw allow ssh<br />
sudo ufw allow http<br />
sudo ufw allow https<br />
sudo ufw allow 5432<br />
<img fetchpriority="high" decoding="async" class="alignnone size-full wp-image-2312" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-001.png" alt="" width="399" height="241" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-001.png 399w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-001-300x181.png 300w" sizes="(max-width: 399px) 100vw, 399px" /></p>
<p>[3]、限制來源IP並允許任何Port<br />
sudo ufw allow from 192.168.0.1/32<br />
sudo ufw allow from 192.168.1.200/32<br />
sudo ufw allow from 192.168.3.11/32<br />
<img decoding="async" class="alignnone size-full wp-image-2313" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-002.png" alt="" width="558" height="137" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-002.png 558w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-002-300x74.png 300w" sizes="(max-width: 558px) 100vw, 558px" /></p>
<p>[4]、限制來源IP並允許特定Port<br />
sudo ufw allow from 192.168.33.55 to any port 22<br />
sudo ufw allow from 192.168.7.5 to any port 80<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2320" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-008.png" alt="" width="675" height="96" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-008.png 675w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-008-300x43.png 300w" sizes="auto, (max-width: 675px) 100vw, 675px" /></p>
<p>[5]、啟動防火牆<br />
sudo ufw enable<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2314" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-003.png" alt="" width="415" height="116" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-003.png 415w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-003-300x84.png 300w" sizes="auto, (max-width: 415px) 100vw, 415px" /></p>
<p>[6]、關閉防火牆<br />
sudo ufw disable<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2321" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-010.png" alt="" width="496" height="66" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-010.png 496w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-010-300x40.png 300w" sizes="auto, (max-width: 496px) 100vw, 496px" /></p>
<p>[7]、查看防火牆設定狀態<br />
sudo ufw status<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2315" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-004.png" alt="" width="534" height="299" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-004.png 534w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-004-300x168.png 300w" sizes="auto, (max-width: 534px) 100vw, 534px" /></p>
<p>帶出防火牆設定狀態並帶出編號的指令<br />
sudo ufw status numbered<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2316" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-005.png" alt="" width="580" height="298" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-005.png 580w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-005-300x154.png 300w" sizes="auto, (max-width: 580px) 100vw, 580px" /></p>
<p>[8]、刪除防火牆第3條規則<br />
sudo ufw delete 3<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2317" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-006.png" alt="" width="364" height="119" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-006.png 364w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-006-300x98.png 300w" sizes="auto, (max-width: 364px) 100vw, 364px" /></p>
<p>[9]、刪除所有防火牆設定<br />
sudo ufw reset<br />
<img loading="lazy" decoding="async" class="alignnone size-full wp-image-2318" src="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-007.png" alt="" width="727" height="167" srcset="https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-007.png 727w, https://ailog.tw/lifelog/wp-content/uploads/2020/01/Ubuntu-FW-007-300x69.png 300w" sizes="auto, (max-width: 727px) 100vw, 727px" /></p>
<p>[10]、防火牆預設規則是封鎖還是放行設定(其實就是正向表列跟負向表列的用途)<br />
10.1、設定為預設放行<br />
sudo ufw default allow<br />
備註說明：使用在負向表列的情境，規則中都是設定「拒絕連線」的條列，不在規則定義的，通通都是「允許」。</p>
<p>10.2、設定為預設封鎖<br />
sudo ufw default deny<br />
備註說明：使用在正向表列的情境，規則中都是設定「允許」連線的條列，不在規則定義的，通通都是「拒絕連線」。</p>
<p>[11]、訪火牆設定規則補充<br />
上述的所有防火牆規則設定只要有「allow」跟「deny」的地方都可以互換，就看情境的需求是什麼，這個就讓大家自己動動腦搂!</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
