Hacker News new | past | comments | ask | show | jobs | submit login

Well yeah, you turned on ip forwarding and created a network on your host that can be reached. Imagine this was a VM host and those networks were meant to be routable, how else could it work?

Are people just now discovering the FORWARD chain?




Like the OP said,

> most Linux users do not know how to configure their firewalls and have not added any rules to DOCKER-USER. The few users that do know how to configure their firewalls are likely to be unpleasantly surprised that their existing FORWARD rules have been preceded by Docker's own forwarding setup




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: