Security & Privacy · version 251123-1
ufw-docker
By default, Docker writes its own iptables rules that bypass UFW, so a published container port can be reachable from the internet even though UFW looks…
What is ufw-docker?
By default, Docker writes its own iptables rules that bypass UFW, so a published container port can be reachable from the internet even though UFW looks like it's blocking it. ufw-docker patches UFW's rule files so container ports are only exposed the way you explicitly allow with normal `ufw route allow` commands, while still letting containers talk to each other internally.
Install ufw-docker on Omarchy
$ omarchy pkg add ufw-dockerGood to know
- Docker and UFW already installed
- Root/sudo access to edit /etc/ufw/after.rules
Package details
- Pricing
- free-libre
- Licence
- GPL License Version 3.0
- Download
- 27.4 KB
- Installed
- 67 KB