24 lines
396 B
Bash
24 lines
396 B
Bash
|
#!/bin/bash
|
||
|
|
||
|
set -euo pipefail
|
||
|
|
||
|
sudo apt install -y ufw
|
||
|
|
||
|
sudo ufw default deny incoming
|
||
|
sudo ufw default allow outgoing
|
||
|
|
||
|
port=$(cat /etc/ssh/sshd_config | grep -o 'Port [0-9]*' | grep -o '[0-9]*')
|
||
|
sudo ufw allow "$port/tcp"
|
||
|
|
||
|
if ! which nginx; then
|
||
|
sudo ufw allow "Nginx Full"
|
||
|
fi
|
||
|
|
||
|
sudo ufw show added
|
||
|
|
||
|
read -p "Rules good? [y/N]: " prompt
|
||
|
if [[ $prompt == "y" ]]; then
|
||
|
sudo ufw enable
|
||
|
fi
|
||
|
|