ClearFoundation Tracker - ClearOS | |||||
View Issue Details | |||||
ID | Project | Category | View Status | Date Submitted | Last Update |
0020441 | ClearOS | app-incoming-firewall - Incoming Firewall | public | 2018-06-20 02:14 | 2021-11-11 06:02 |
Reporter | NickH | ||||
Assigned To | |||||
Priority | normal | Severity | feature | Reproducibility | always |
Status | closed | Resolution | suspended | ||
Platform | OS | OS Version | |||
Product Version | 7.5.0 | ||||
Target Version | Fixed in Version | ||||
Summary | 0020441: Add extra validation step if services considered dangerous are opened | ||||
Description | Please add an extra validation step if the sysop tries to open incoming services that are generally considered dangerous to open to the internet (e.g. NetBIOS, SMB, SMB over TCP). It should throw some sort of "Are you really sure" warning, and perhaps note that the services are open to the LAN without any extra rule being added. I have recently been on to 2 customer systems and have noted that the NetBIOS and SMB ports had been opened to the internet and I warned the customers who both said they only did it so people on the LAN could access the file shares ...... It could be valid in rare use cases in Gateway mode but most times won't be. It could easily be valid in Standalone with Firewall. It is the Gateway mode I really want to cover with this change. | ||||
Steps To Reproduce | |||||
Additional Information | |||||
Tags | No tags attached. | ||||
Relationships | |||||
Attached Files | |||||
Issue History | |||||
Date Modified | Username | Field | Change | ||
2018-06-20 02:14 | NickH | New Issue | |||
2018-06-20 07:37 | user2 | Status | new => confirmed | ||
2021-11-11 06:02 | NickH | Note Added: 0016271 | |||
2021-11-11 06:02 | NickH | Status | confirmed => closed | ||
2021-11-11 06:02 | NickH | Resolution | open => suspended |
Notes | |||||
|
|||||
|
|