this post was submitted on 28 Sep 2021
5 points (85.7% liked)

Run It Yourself

2976 readers
1 users here now

Overlaps somewhat with /c/floss_replacement and /c/privacy; crossposts welcome

founded 4 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 2 points 3 years ago (2 children)

At my work we use docker and we use port:port for all containers everywhere. This is after staging database has been wiped by a "ransomware" attack.

[–] [email protected] 1 points 3 years ago (1 children)

Some people never learn... but if those ports are only exposed internally and there is a strong firewall to the outside it is somewhat less bad.

[–] [email protected] 1 points 3 years ago

We use UFW and doing this on docker bypasses UFW.