Responding to the first message because I'm not interested in further
discussion. It's clear to me that there will be no agreement in this
matter unless there are reasonable potential alternatives. Therefore,
this message is just to let you all know that I'm at least trying to
push for better alternatives. In particular, these:
https://bugs.kde.org/show_bug.cgi?id=411359
https://gitlab.gnome.org/GNOME/gnome-shell/issues/1550
https://gitlab.gnome.org/GNOME/gnome-control-center/issues/650
You are welcome to help with the above, or bring them to other
desktops. Hopefully, if these proposals get accepted and implemented,
we could eventually bring back this discussion and reach some
consensus.
Iñaki
On Mon, 26 Aug 2019 at 14:40, Vitaly Zaitsev via devel
<devel(a)lists.fedoraproject.org> wrote:
Hello all.
Is it okay that firewall is completely disabled by default (opened all
ports 1025-65535) on Fedora Workstation?
I think that this is a major vulnerability and it must be fixed by
changing default zone to public.
firewall-cmd --list-all
FedoraWorkstation (active)
target: default
icmp-block-inversion: no
interfaces: enp1s0
sources:
services: dhcpv6-client mdns samba-client ssh
ports: 1025-65535/udp 1025-65535/tcp
protocols:
masquerade: no
forward-ports:
source-ports:
icmp-blocks:
rich rules:
--
Sincerely,
Vitaly Zaitsev (vitaly(a)easycoding.org)
_______________________________________________
devel mailing list -- devel(a)lists.fedoraproject.org
To unsubscribe send an email to devel-leave(a)lists.fedoraproject.org
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines:
https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedoraproject.org/archives/list/devel@lists.fedoraproject.org
--
Iñaki Úcar