On Thu, 4 Apr 2024 13:03:50 +0200, Florian Lohoff <f...@zz.de> wrote: >I personally moved to nftables which is nearly as simple once you get >your muscle memory set.
So you have dedicated packet filters on every machine you run, even if sshd is the only network-facing service? Greetings Marc -- ---------------------------------------------------------------------------- Marc Haber | " Questions are the | Mailadresse im Header Rhein-Neckar, DE | Beginning of Wisdom " | Nordisch by Nature | Lt. Worf, TNG "Rightful Heir" | Fon: *49 6224 1600402