but if user able to login to Cloudstack, they can edit the security gorup
themself right ?

I am thinking there is some rules  that always highest prioity not
editable by user. or may only editable by admin

Mainly worry for this is spammer



On Tue, Feb 9, 2021 at 3:49 PM Wido den Hollander <[email protected]> wrote:

>
>
> On 2/8/21 9:14 AM, Hean Seng wrote:
> > Hi
> >
> > Is that possible to have default block rules for all the VM,  Default
> Block
> > SMTP outbound port in iptables
> >
>
> We did this by changing the security groups. Egress we only allow:
>
> - TCP 21 and 22
> - TCP 26-65534
>
> This way VMs can connect to port 25 outbound and thus not send e-mail.
>
> Wido
>
> >
> > Thank you
> >
>


-- 
Regards,
Hean Seng

Reply via email to