BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] Trying to connect to internet in Debian
- Subject: [Discuss] Trying to connect to internet in Debian
- From: richard.pieri at gmail.com (Rich Pieri)
- Date: Sat, 17 Jan 2026 09:52:14 -0500
- In-reply-to: <ms2u6hstcsfm5q7n2upusblixfyujtqal3wys5iyuu4mxz56do@xrhubnobe4mx>
- References: <20260114200605.72f09d97.Richard.Pieri@gmail.com> <13efd674-e437-4524-ba2c-f63d1a792516@app.fastmail.com> <20260115210552.50d857d3.Richard.Pieri@gmail.com> <0d375c22-412f-4cb8-a0fa-fe37c8ea6d90@app.fastmail.com> <20260116153626.0ce7346c.Richard.Pieri@gmail.com> <2251f0d2-d8f7-47ec-9797-36e6022e1311@app.fastmail.com> <4f1683ac-e0b0-488c-a293-92c84ae698e7@borg.org> <b979a5e4-72c2-4e64-becd-1a45b086f14b@app.fastmail.com> <20260116220523.37561c89.Richard.Pieri@gmail.com> <ms2u6hstcsfm5q7n2upusblixfyujtqal3wys5iyuu4mxz56do@xrhubnobe4mx>
On Fri, 16 Jan 2026 23:40:14 -0500 Dan Ritter <dsr at randomstring.org> wrote: > Is setting up a firewall ever going to be so generic that a > reasonably high proportion of users will want a one-click > checkbox and be happy with the results? I suppose it depends on > the user population, but I suspect the answer is negative. Not Debian users, anyway. Debian has offered a selection of firewall tool suites for over 20 years. None are installed as a default configuration. I don't see this changing any time soon. File with Arch which has an even more minimalist do-it-yourself philosophy. Contrast with RHEL, SLES and Ubuntu. They each include exactly one firewall tool suite. Different audiences. The RHEL and SLES audiences are enterprise customers who are paying for support and typically need to comply with corporate policies which require OS level firewalls because Microsoft Windows exists and it really does require that firewall. The Ubuntu audience is non-technical users who don't necessarily know what they're doing but maybe they "know" they need "a firewall". Do I use any of these firewall tools myself? Professionally, mostly no. As previously noted, I disable the firewall service on most new RHEL, SLES and Ubuntu machines I deploy. We don't need it. At home I have three always on Debian servers, two physical machines and one VM. No OS level firewalls. They're protected by the OpenWRT firewall at the border. I also have two Arch (CachyOS) machines (formerly Tumbleweed) on which I do have ufw enabled because one of them is a notebook which finds itself on hostile networks and I like to restrict SSH access beyond simple hardening. ufw is active on the other machine for consistent behavior. -- \m/ (--) \m/
- References:
- [Discuss] Looking for a PCIe USB host bus adapter
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Trying to connect to internet in Debian
- From: rrose at pobox.com (Randall Rose)
- [Discuss] Trying to connect to internet in Debian
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Trying to connect to internet in Debian
- From: rrose at pobox.com (Randall Rose)
- [Discuss] Trying to connect to internet in Debian
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Trying to connect to internet in Debian
- From: rrose at pobox.com (Randall Rose)
- [Discuss] Trying to connect to internet in Debian
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Trying to connect to internet in Debian
- From: rrose at pobox.com (Randall Rose)
- [Discuss] Trying to connect to internet in Debian
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Trying to connect to internet in Debian
- From: dsr at randomstring.org (Dan Ritter)
- [Discuss] Looking for a PCIe USB host bus adapter
- Prev by Date: [Discuss] Trying to connect to internet in Debian
- Next by Date: [Discuss] Trying to connect to internet in Debian
- Previous by thread: [Discuss] Trying to connect to internet in Debian
- Next by thread: [Discuss] Trying to connect to internet in Debian
- Index(es):
