gpo.zugaina.org

Search Portage & Overlays:

USE=tcpd no longer globally enabled - 01/08/2021 00:00 GMT

On 2021-11-01, we will remove USE="tcpd" from the globally default
enabled USE flags (https://bugs.gentoo.org/805077). USE="tcpd" usually
enables sys-apps/tcp-wrappers for an ad hoc firewall based on
/etc/hosts.allow and /etc/hosts.deny.

The Base System project has come to the conclusion that 24 years after
the last upstream release, tcp-wrappers is not suitable for a default
configuration in 2021 anymore. Other distributions have completely
removed support at this point. We strongly recommend you switch to more
modern packet filters, such as BPF, nftables, or iptables. If you rely
on tcp-wrappers, you can re-enable the flag, see

  https://wiki.gentoo.org/wiki//etc/portage/package.use

for package-specific ways to re-enable tcp-wrappers.


Posted By: David Seifert