mirror of
https://github.com/simple-login/app.git
synced 2024-09-27 20:31:30 +02:00
security steps in the readme
This commit is contained in:
parent
e22af08e0b
commit
173b509706
@ -506,7 +506,7 @@ At this step, you should also setup the SSL for Nginx.
|
|||||||
|
|
||||||
If you have followed the steps above, there will be 3 ports exposed over the internet: 7777 (sl-app), 20381 (sl-email) & 5432 (postgresql).
|
If you have followed the steps above, there will be 3 ports exposed over the internet: 7777 (sl-app), 20381 (sl-email) & 5432 (postgresql).
|
||||||
|
|
||||||
You can verify the ports are open by running the following command from a different machine
|
You can verify the ports are open by running the following command from a different machine.
|
||||||
|
|
||||||
```bash
|
```bash
|
||||||
sudo nmap -sS <IP-ADDR> -p 7777,20381,5432
|
sudo nmap -sS <IP-ADDR> -p 7777,20381,5432
|
||||||
@ -522,7 +522,7 @@ To get around this, first run this command to allow only localhost connections t
|
|||||||
iptables -I DOCKER-USER -i eth0 ! -s 127.0.0.1 -j DROP
|
iptables -I DOCKER-USER -i eth0 ! -s 127.0.0.1 -j DROP
|
||||||
```
|
```
|
||||||
|
|
||||||
Docker documentation reference for more info: [documentation](https://docs.docker.com/network/iptables/#restrict-connections-to-the-docker-host)
|
Docker documentation reference for more info: [documentation](https://docs.docker.com/network/iptables/#restrict-connections-to-the-docker-host).
|
||||||
|
|
||||||
Next, to make the changes persistent across reboots, we are going to use `iptables-persistent` package.
|
Next, to make the changes persistent across reboots, we are going to use `iptables-persistent` package.
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user