you are viewing a single comment's thread
view the rest of the comments
[–] 25 points 3 years ago (3 children)

Depends on what system you’re running, and especially what task you’re doing. Trying to operate firewall rules via CLI is an exercise in self-inflicted pain, as is trying to set a complex cron schedule without a handy calculator.

  • source
  • parent
  • hideshow 6 child comments
  • [–] 9 points 3 years ago (1 child)

    on the contrary, CLI is the BEST way to deal with firewall rules.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 6 points 3 years ago

    Personally, I'd take it a step further. Firewall rules should be defined as code in a git repo. So if you're building rules in a gui, you're simply doing it wrong. While a cli and/or api should be used, that should be automated and invisible to a human.

  • source
  • parent
  • [–] 2 points 3 years ago (1 child)

    TIL there are people configuring firewalls via GUIs. Okay … I‘m do that too on my private equipment because I’m lazy. But it feels wrong doing so in an enterprise context.

  • source
  • parent
  • hideshow 2 child comments