Join GitHub today
GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.Sign up
Rule updates 2018 02.v1 #321
There's an inconsistency between the comment and the implementation for the macro
allowed_ssh_hosts: I suppose you want to set it to
ssh_port (as the comment says), otherwise the rule will trigger for every non local ssh connection. Or am I missing something?
The rule for detecting nodeport connections looks good.