enable/disable ufw
sudo ufw enable|disableenable at startup
sudo systemctl ufw enablecheck default configuration
grep `DEFAULT_` /etc/default/ufwchange default
sudo ufw default allow outgoing
sudo ufw default deny incomingshow current rules
sudo ufw verbose numberedshow current application listening in the system
sudo ufw show listeningdisplay live log
sudo tail -f /var/log/ufw.logallow incoming connection: $REMOTE_IP = 192.168.0.0/24 | 192.168.1.1 $REMOTE_PORT = 3000:5000 | 3999 $LOCAL_INTERFACE = eth0 $LOCAL_PORT = 22 | 443
sudo ufw allow \
in on $LOCAL_INTERFACE \
from $REMOTE_IP[:$REMOTE_PORT] \
to any port $LOCAL_PORTdelete connection
sudo ufw status numbered
[...]
sudo ufw delete 2