• 31 Posts
  • 2.9K Comments
Joined 2 年前
cake
Cake day: 2023年6月30日

help-circle



  • slazer2au@lemmy.worldtoSelfhosted@lemmy.worldDocker security
    link
    fedilink
    English
    arrow-up
    2
    ·
    11 小时前

    None of those speak to the reliability of iptables. They all sound like skill issues.

    In 15 years of network engineering iptables has been the simplest part.

    A layered approach with hardware firewalls is valid but when those firewalls get popped, looking at you Cisco, Fortinet, and PA you still want host level restrictions.
    Your firewall or switch should never be used as a jump host to servers