Skip to main content
The 2024 Developer Survey results are live! See the results

You are not logged in. Your edit will be placed in a queue until it is peer reviewed.

We welcome edits that make the post easier to understand and more valuable for readers. Because community members review edits, please try to make the post substantially better than how you found it, for example, by fixing grammar or adding additional resources and hyperlinks.

6
  • 2
    That's clever. One small nit: the configuration opens 80 and 443, but it also opens all the other ports. Relaxing permissions on the other ports may not be desired.
    – jww
    Commented Sep 13, 2019 at 13:36
  • Nice solution. I have used it for IPv6 and it is working perfectly. Here is what I've done: docs.google.com/document/d/e/…
    – Fernando
    Commented Apr 23, 2020 at 11:32
  • seems to be the simplest solution, however is there a way to only open 80 and 443 to a certain group?
    – mekb
    Commented Aug 26, 2021 at 2:45
  • 1
    > be careful about security because all users can bind all ports Can someone elaborate why this is bad? Commented Mar 20, 2022 at 16:01
  • 1
    "security ... all users can bind all ports" - this a vestigial security feature leftover from the olden days where everyone would share a single computer. At that time the only way to know if you were accessing the real server was to see if it connects on the correct port. Imagine if you ftp into the server thinking you're getting the server but some rogue user on that server decided to set a fake ftp server on port 21, you'd be sending your files to the rogue user instead of the server LOL! Security has improved a lot since those days... and this "security feature" is merely an annoyance.
    – Emre
    Commented Nov 28, 2023 at 15:09