Bug #319226
0: app list
WARN: Checks disabled
Available applications:
  A aZ9 _-.+
  Apache
  Apache Full
  Apache Secure
  Bind9
  Custom Web App
  Dovecot IMAP
  Dovecot POP3
  Dovecot Secure IMAP
  Dovecot Secure POP3
  Multi TCP
  Multi UDP
  No Protocol
  OpenNTPD
  Samba
  a aZ9 _-.+


Bug #337705
1: help
ERROR: Could not find required libraries. Aborting.


Bug (Samba IPV4 tuple text wrong when IPV6 is enabled
2: allow in on eth1 to any app Samba
WARN: Checks disabled
Rules updated
Rules updated (v6)


### tuple ### allow udp 137,138 0.0.0.0/0 any 0.0.0.0/0 Samba - in_eth1
-A ufw-user-input -i eth1 -p udp -m multiport --dports 137,138 -j ACCEPT -m comment --comment 'dapp_Samba'

### tuple ### allow tcp 139,445 0.0.0.0/0 any 0.0.0.0/0 Samba - in_eth1
-A ufw-user-input -i eth1 -p tcp -m multiport --dports 139,445 -j ACCEPT -m comment --comment 'dapp_Samba'

### tuple ### allow udp 137,138 ::/0 any ::/0 Samba - in_eth1
-A ufw6-user-input -i eth1 -p udp -m multiport --dports 137,138 -j ACCEPT -m comment --comment 'dapp_Samba'

### tuple ### allow tcp 139,445 ::/0 any ::/0 Samba - in_eth1
-A ufw6-user-input -i eth1 -p tcp -m multiport --dports 139,445 -j ACCEPT -m comment --comment 'dapp_Samba'

3: delete allow in on eth1 to any app Samba


Bug (inserted Samba rules out of order when IPV6 is enabled
4: allow in on eth0
WARN: Checks disabled
Rules updated
Rules updated (v6)


5: allow to 192.168.0.2
WARN: Checks disabled
Rules updated


6: allow to 192.168.0.3
WARN: Checks disabled
Rules updated


7: allow in on eth1
WARN: Checks disabled
Rules updated
Rules updated (v6)


8: allow in on eth2
WARN: Checks disabled
Rules updated
Rules updated (v6)


9: insert 8 deny to any app Bind9
WARN: Checks disabled
Rules updated
Rules updated (v6)


-A ufw-user-input -i eth0 -j ACCEPT
-A ufw-user-input -d 192.168.0.2 -j ACCEPT
-A ufw-user-input -d 192.168.0.3 -j ACCEPT
-A ufw-user-input -i eth1 -j ACCEPT
-A ufw-user-input -p tcp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw-user-input -p udp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw-user-input -i eth2 -j ACCEPT
-A ufw6-user-input -i eth0 -j ACCEPT
-A ufw6-user-input -i eth1 -j ACCEPT
-A ufw6-user-input -p tcp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw6-user-input -p udp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw6-user-input -i eth2 -j ACCEPT
10: delete deny to any app Bind9
WARN: Checks disabled
Rules updated
Rules updated (v6)


11: insert 8 deny to any app Samba
WARN: Checks disabled
Rules updated
Rules updated (v6)


-A ufw-user-input -i eth0 -j ACCEPT
-A ufw-user-input -d 192.168.0.2 -j ACCEPT
-A ufw-user-input -d 192.168.0.3 -j ACCEPT
-A ufw-user-input -i eth1 -j ACCEPT
-A ufw-user-input -p udp -m multiport --dports 137,138 -j DROP -m comment --comment 'dapp_Samba'
-A ufw-user-input -p tcp -m multiport --dports 139,445 -j DROP -m comment --comment 'dapp_Samba'
-A ufw-user-input -i eth2 -j ACCEPT
-A ufw6-user-input -i eth0 -j ACCEPT
-A ufw6-user-input -i eth1 -j ACCEPT
-A ufw6-user-input -p udp -m multiport --dports 137,138 -j DROP -m comment --comment 'dapp_Samba'
-A ufw6-user-input -p tcp -m multiport --dports 139,445 -j DROP -m comment --comment 'dapp_Samba'
-A ufw6-user-input -i eth2 -j ACCEPT
12: delete deny to any app Samba
WARN: Checks disabled
Rules updated
Rules updated (v6)


13: insert 5 deny to any app Bind9
WARN: Checks disabled
Rules updated
Rules updated (v6)


-A ufw-user-input -i eth0 -j ACCEPT
-A ufw-user-input -d 192.168.0.2 -j ACCEPT
-A ufw-user-input -d 192.168.0.3 -j ACCEPT
-A ufw-user-input -i eth1 -j ACCEPT
-A ufw-user-input -p tcp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw-user-input -p udp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw-user-input -i eth2 -j ACCEPT
-A ufw6-user-input -i eth0 -j ACCEPT
-A ufw6-user-input -i eth1 -j ACCEPT
-A ufw6-user-input -p tcp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw6-user-input -p udp --dport 53 -j DROP -m comment --comment 'dapp_Bind9'
-A ufw6-user-input -i eth2 -j ACCEPT
14: delete deny to any app Bind9
WARN: Checks disabled
Rules updated
Rules updated (v6)


15: insert 5 deny to any app Samba
WARN: Checks disabled
Rules updated
Rules updated (v6)


-A ufw-user-input -i eth0 -j ACCEPT
-A ufw-user-input -d 192.168.0.2 -j ACCEPT
-A ufw-user-input -d 192.168.0.3 -j ACCEPT
-A ufw-user-input -i eth1 -j ACCEPT
-A ufw-user-input -p udp -m multiport --dports 137,138 -j DROP -m comment --comment 'dapp_Samba'
-A ufw-user-input -p tcp -m multiport --dports 139,445 -j DROP -m comment --comment 'dapp_Samba'
-A ufw-user-input -i eth2 -j ACCEPT
-A ufw6-user-input -i eth0 -j ACCEPT
-A ufw6-user-input -i eth1 -j ACCEPT
-A ufw6-user-input -p udp -m multiport --dports 137,138 -j DROP -m comment --comment 'dapp_Samba'
-A ufw6-user-input -p tcp -m multiport --dports 139,445 -j DROP -m comment --comment 'dapp_Samba'
-A ufw6-user-input -i eth2 -j ACCEPT
16: delete allow in on eth0
WARN: Checks disabled
Rules updated
Rules updated (v6)


17: delete allow to 192.168.0.2
WARN: Checks disabled
Rules updated


18: delete allow to 192.168.0.3
WARN: Checks disabled
Rules updated


19: delete allow in on eth1
WARN: Checks disabled
Rules updated
Rules updated (v6)


20: delete allow in on eth2
WARN: Checks disabled
Rules updated
Rules updated (v6)


21: delete deny to any app Samba
WARN: Checks disabled
Rules updated
Rules updated (v6)


Bug #407810
22: app info bug407810
WARN: Checks disabled
Profile: bug407810
Title: LanManager-like file and printer server for Unix
Description: The bug407810 software suite is a collection of programs that
implements the SMB/CIFS protocol for unix systems, allowing you to serve
files and printers to Windows, NT, OS/2 and DOS clients. This protocol is
sometimes also referred to as the LanManager or NetBIOS protocol.

Ports:
  137,138/udp
  139,445/tcp


23: allow bug407810


-A ufw-user-input -p udp -m multiport --dports 137,138 -j ACCEPT -m comment --comment 'dapp_bug407810'
-A ufw-user-input -p tcp -m multiport --dports 139,445 -j ACCEPT -m comment --comment 'dapp_bug407810'
24: delete allow bug407810


Bug #430053
25: allow 12345


26: allow 12345


27: default deny


28: logging medium


Bug #480789
29: --dry-run logging low


30: allow 22


checking for 'INVALID -j RETURN' in user.rules
checking for 'INVALID -j RETURN' in user6.rules
31: delete allow 22


32: --dry-run logging on


33: allow 22


checking for 'INVALID -j RETURN' in user.rules
checking for 'INVALID -j RETURN' in user6.rules
34: delete allow 22


35: --dry-run logging medium


36: allow 22


checking for 'INVALID -j RETURN' in user.rules
checking for 'INVALID -j RETURN' in user6.rules
37: delete allow 22


38: --dry-run logging high


39: allow 22


checking for 'INVALID -j RETURN' in user.rules
checking for 'INVALID -j RETURN' in user6.rules
40: delete allow 22


41: --dry-run logging full


42: allow 22


checking for 'INVALID -j RETURN' in user.rules
checking for 'INVALID -j RETURN' in user6.rules
43: delete allow 22


Bug #512131
44: logging off


45: logging low


46: logging on


47: logging medium


48: logging high


49: logging full


50: logging off


