Audit first, then harden with explicit approval. Keep this file short; read the references when needed.
Run:
uname -a
cat /etc/os-release
id
ss -ltnup 2>/dev/null || ss -ltnp 2>/dev/null
openclaw security audit --deep
openclaw update status
openclaw status --deep
If firewall state matters, also run:
ufw status verbose || true
firewall-cmd --state 2>/dev/null || true
nft list ruleset 2>/dev/null || true
Check for these first:
tools.elevated.allowFrom.*gateway.nodes.denyCommandsRead these only when relevant:
references/ufw-playbook.mdreferences/openclaw-fix-patterns.mdWhen the user wants generated files, create:
firewall-rules.mdapply-firewall.shscripts/rollback-firewall.shscripts/verify-firewall.shufw status verbose and ss -ltnp.After fixes, verify with:
openclaw security audit --deep
openclaw gateway status
python3 -m json.tool ~/.openclaw/openclaw.json >/dev/null
sudo ufw status verbose
ss -ltnp
Success means:
發現更多技能外掛,請訪問7w4.net。
質量較好。這個 Skill 把安全審計和防火牆加固的流程梳理得很清晰,核心規則設計合理,文件結構簡潔易讀,指令碼工具也比較實用。不過缺少使用示例,對新手不太友好,遇到複雜問題可能不太好找到具體答案。整體來說是個靠譜的安全加固工具,適合有經驗的使用者使用。