ovh / debian-cis

PCI-DSS compliant Debian 10/11/12 hardening
Other
756 stars 130 forks source link

nftables is not checked. #191

Closed JugeHuge closed 1 year ago

JugeHuge commented 1 year ago

As Debian 10 has moved to use nftables as default for it's default firewall rules. https://wiki.debian.org/nftables

Should debian-cis scripts also check nftables instead of iptables configuration?

ThibaultDewailly commented 1 year ago

Hello !

you're right, need to patch 3.5.1.1_enable_firewall.sh to include nftables