You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Doesn't this make the system vulnerable, for example a vpn-server config where clients can access each others ips internally in the vpn network, would expose all open ports?
Would it not be better to disable that rule by default, so that only established incoming connections are allowed?
The text was updated successfully, but these errors were encountered:
I tried blocking incoming tun interface traffic but I had connectivity issues with that. IIRC there were problems with key renegotiation, maybe related to blocked ping from server. Anyway I don't think this can be recommended in general use.
To protect system I advice instead:
Don't use vpn server which allows p2p client access.
As reported by @notDavid (#29 (comment)):
The text was updated successfully, but these errors were encountered: