• Newusername4oldfart@lemm.ee
    link
    fedilink
    English
    arrow-up
    27
    arrow-down
    2
    ·
    1 year ago

    Depends on what system you’re running, and especially what task you’re doing. Trying to operate firewall rules via CLI is an exercise in self-inflicted pain, as is trying to set a complex cron schedule without a handy calculator.

    • ysjet@lemmy.world
      link
      fedilink
      English
      arrow-up
      18
      arrow-down
      9
      ·
      1 year ago

      on the contrary, CLI is the BEST way to deal with firewall rules.

      • Lodra
        link
        fedilink
        English
        arrow-up
        8
        arrow-down
        1
        ·
        1 year ago

        Personally, I’d take it a step further. Firewall rules should be defined as code in a git repo. So if you’re building rules in a gui, you’re simply doing it wrong. While a cli and/or api should be used, that should be automated and invisible to a human.

    • Rakn@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      1 year ago

      TIL there are people configuring firewalls via GUIs. Okay … I‘m do that too on my private equipment because I’m lazy. But it feels wrong doing so in an enterprise context.

    • Finn@lemm.ee
      link
      fedilink
      arrow-up
      1
      ·
      1 year ago

      Junos CLI is a real treat. I work with the SRX line regularly, particularly the SRX4600 and the SRX300 series.