[CentOS] CentOS 7 - Firewall always allows outgoing packets?
Eero Volotinen
eero.volotinen at iki.fi
Sat Aug 9 13:17:36 UTC 2014
2014-08-09 0:55 GMT+03:00 Neil Aggarwal <neil at jammconsulting.com>:
> Hello all:
>
> I am looking at the documentation of the new firewalld service in CentOS 7.
> It looks like no matter what I configure with it, outgoing connections are
> still going to be allowed. That does not seem very secure.
>
> I always set my servers to default policy of DROP for everything incoming
> and outgoing and then add rules to allow very specific traffic through.
>
> Is this possible using the new firewalld service or should I disable it and
> go back to using iptables?
>
Yes, it is possible, check this out:
http://docs.fedoraproject.org/en-US/Fedora/19/html/Security_Guide/sec-Disabling_firewalld.html
--
Eero
More information about the CentOS
mailing list