[CentOS] CentOS 7 - Firewall always allows outgoing packets?

Steve Clark sclark at netwolves.com
Sat Aug 9 16:02:00 UTC 2014


On 08/08/2014 05:55 PM, Neil Aggarwal wrote:
> Hello all:
>
> I am looking at the documentation of the new firewalld service in CentOS 7.
> It looks like no matter what I configure with it, outgoing connections are
> still going to be allowed.  That does not seem very secure.
>
> I always set my servers to default policy of DROP for everything incoming
> and outgoing and then add rules to allow very specific traffic through.
>
> Is this possible using the new firewalld service or should I disable it and
> go back to using iptables?
>
> Thanks,
>    Neil
>
> --
> Neil Aggarwal, (972) 834-1565
> We lend money to investors to buy or refinance single family rent houses.
> No origination fees, quick approval, no credit check.
>
In my way of thinking I am always wary of "being taken care of", especially when it comes to
internet security!

I like your philosophy of deny everything and selectively allow what YOU want.

My $.02

-- 
Stephen Clark
*NetWolves Managed Services, LLC.*
Director of Technology
Phone: 813-579-3200
Fax: 813-882-0209
Email: steve.clark at netwolves.com
http://www.netwolves.com



More information about the CentOS mailing list