Poor security defaults
Bug #107616 reported by
Sean
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Ubuntu |
Invalid
|
Undecided
|
Unassigned |
Bug Description
Security by default in ubuntu is not up to scratch at all, I understand that iptables in the kernel does the job but it's not acceptable and very basic for this day and age.
Please can we have Firestarter (frontend) installed by default or ICMP filtering enabled in iptables and or Firestarter. Even Windows XP SP2 has better default firewall security than Ubuntu and the fact that a cracker can ping your machine to get a response to say something is there is not good. We should not make the mistake (like Windows) with security defaults, just because we are low on the radar of crackers dont mean we can step back, after all thats what SELinux are in the kernel for.
To post a comment you must log in.
A default install will repsond to pings but that's basically it as far as network presence is concerned. If you do a 'sudo netstat -plunt' you'll see that it doesn't listen on any external ports.