download.opensuse.org-non-oss http://download.opensuse.org/tumbleweed/repo/non-oss/ Main Repository (NON-OSS) 99 / download.opensuse.org-tumbleweed http://download.opensuse.org/update/tumbleweed/ Main Update Repository 99 / repo-openh264 http://codecs.opensuse.org/openh264/openSUSE_Tumbleweed Open H.264 Codec (openSUSE Tumbleweed) 99 / splash=silent mitigations=auto quiet security=selinux selinux=1 auto auto false true true gfxterm 8 false true grub2 public true off false Unsolicited incoming network packets are rejected. Incoming packets that are related to outgoing network connections are accepted. Outgoing network connections are allowed. false block Block %%REJECT%% For computers in your demilitarized zone that are publicly-accessible with limited access to your internal network. Only selected incoming connections are accepted. false dmz ssh DMZ default All network connections are accepted. docker0 false docker docker ACCEPT Unsolicited incoming network packets are dropped. Incoming packets that are related to outgoing network connections are accepted. Outgoing network connections are allowed. false drop Drop DROP For use on external networks. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. true external ssh External default For use in home areas. You mostly trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. false home dhcpv6-client mdns samba-client ssh Home default For use on internal networks. You mostly trust the other computers on the networks to not harm your computer. Only selected incoming connections are accepted. false internal dhcpv6-client mdns samba-client ssh Internal default false libvirt icmp ipv6-icmp dhcp dhcpv6 dns ssh tftp libvirt ACCEPT false libvirt-routed libvirt-routed default false nm-shared icmp ipv6-icmp dhcp dns ssh NetworkManager Shared ACCEPT For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. false public cockpit dhcpv6-client ssh Public default All network connections are accepted. false trusted Trusted ACCEPT For use in work areas. You mostly trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. false work dhcpv6-client ssh Work default false 100 users 1000 jason 493 mail postfix 484 clock 480 render 487 utmp 1 bin 473 libvirtdbus 2 daemon 472 dnsmasq 458 statd 495 nagios 497 tftp dnsmasq 499 www wwwrun 454 setroubleshoot 481 input 457 cephadm 468 wsdd 98 tss 455 wireshark 459 sshd 36 kvm qemu 478 tape 42 trusted 488 lock 461 chrony 489 kmem 491 ftp 59 maildrop postfix 5 tty 71 ntadmin 467 polkitd 65533 nogroup 476 audit 490 wheel 0 root 486 audio 483 dialout 485 cdrom 460 rpc 167 ceph 464 libstoragemgmt 62 man 496 nobody 15 shadow 462 memcached 494 nagcmd nagios,wwwrun 482 disk 492 lp 474 messagebus 469 systemd-coredump 456 winbind 465 redis 479 sgx 108 libvirt libvirtdbus 471 unbound 470 systemd-journal 107 qemu 51 postfix 463 systemd-timesync 475 dhcpcd 498 wwwrun 477 video 127.0.0.1 localhost localhost.localdomain ::1 localhost localhost.localdomain ipv6-localhost ipv6-loopback fe00::0 ipv6-localnet ff00::0 ipv6-mcastprefix ff02::1 ipv6-allnodes ff02::2 ipv6-allrouters ff02::3 ipv6-allhosts false auto systemd false multi-user NetworkManager NetworkManager-dispatcher NetworkManager-wait-online YaST2-Firstboot YaST2-Second-Stage apparmor appstream-sync-cache audit-rules auditd blk-availability klog ceph-crash chronyd cron dbus-broker firewalld irqbalance iscsi kbdsettings lvm2-monitor mcelog nvmefc-boot-connections nvmf-autoconnect postfix purge-kernels rsyslog smartd soft-reboot-cleanup sshd systemd-pstore systemd-remount-fs virtqemud virtxend wtmpdb-update-boot cockpit iscsid virtlockd virtlogd virtnetworkd virtnodedevd virtsecretd virtstoraged wtmpdbd true yast2-dns-manager yast2-configuration-management yast2-cluster tmux snapper os-prober openssh openSUSE-release numactl neovim mdadm mc kexec-tools irqbalance iproute2 grub2 glibc git firewalld e2fsprogs dracut dosfstools cockpit-tukit cockpit-storaged cockpit-selinux cockpit-repos cockpit-packages cockpit-packagekit cockpit-kdump cockpit-firewalld chrony btrfsprogs btop autoyast2 NetworkManager base basesystem ceph_base documentation enhanced_base file_server kvm_server kvm_tools microos_cockpit minimal_base network_admin selinux sw_management yast2_basis yast2_server openSUSE false false America/New_York 100 /home -1 /bin/bash 022 true jason 1000 /home/jason false 99999 0 7 /bin/bash 1000 $6$3lsEECbcPdZi9RB3$2viHj2/MsQNo0pA3wq3zSI/4A0bGKnzhFuFPvuFlNlgUg.QOP/gniniD.W1.vCsvVQKTXTPE03l5CG71v5kM4. jason true Mailer daemon 493 /var/spool/clientmqueue false 1 /usr/sbin/nologin 496 ! mail true Manual pages viewer 62 /var/lib/empty false 1 /usr/sbin/nologin 13 ! man true Ceph storage service 167 /var/lib/ceph false /sbin/nologin 167 ! ceph true Secure FTP User 496 /var/lib/empty false /bin/false 466 ! ftpsecure true daemon account for libstoragemgmt 464 /run/lsm false /usr/sbin/nologin 464 !* libstoragemgmt true Daemon 2 /sbin false 1 /usr/sbin/nologin 2 ! daemon true dnsmasq 472 /var/lib/empty false /usr/sbin/nologin 490 ! dnsmasq true NFS statd daemon 458 /var/lib/nfs false /usr/sbin/nologin 458 !* statd true Libvirt D-Bus bridge 473 / false /usr/sbin/nologin 491 ! libvirtdbus true nobody 496 /var/lib/nobody false 1 /usr/sbin/nologin 65534 ! nobody true bin 1 /bin false 1 /usr/sbin/nologin 1 ! bin true Printing daemon 492 /var/spool/lpd false 1 /usr/sbin/nologin 495 ! lp true SELinux troubleshoot server 454 /var/lib/setroubleshoot false /usr/sbin/nologin 454 !* setroubleshoot true user for memcached 462 /var/lib/memcached false /usr/sbin/nologin 462 !* memcached true User for Nagios 495 /var/lib/nagios false /bin/false 497 ! nagios true TFTP Account 497 /srv/tftpboot false 1 /usr/sbin/nologin 498 ! tftp true systemd Core Dumper 469 / false 1 /usr/sbin/nologin 469 !* systemd-coredump true SSH daemon 459 /var/lib/sshd false /usr/sbin/nologin 459 !* sshd true User for redis key-value store 465 /var/lib/redis false /usr/sbin/nologin 465 !* redis true User for wsdd 468 /run/wsdd false /usr/sbin/nologin 468 !* wsdd true TSS daemon 98 /var/lib/tpm false 1 /usr/sbin/nologin 98 ! tss true User for D-Bus 474 /run/dbus false /usr/sbin/nologin 492 ! messagebus true cephadm user for mgr/cephadm 457 /var/lib/cephadm false /bin/bash 457 ! cephadm true unbound caching DNS server 471 /var/lib/unbound false /usr/sbin/nologin 489 ! unbound true Chrony Daemon 461 /var/lib/chrony false /usr/sbin/nologin 461 !* chrony true qemu user 107 / false 1 /usr/sbin/nologin 107 ! qemu true FTP Account 491 /srv/ftp false 1 /usr/sbin/nologin 494 ! ftp true root 0 /root false /bin/bash 0 $6$VBIaRL.1qGWMhrfo$oNElFEC/imD7MHCR2I8FL/6pj8z.JDAcHagb0FcQRvrp/Y.uabqyVisjLq/bts4SkgPY8hBXBjWa/Kh91gECD. root true User for polkitd 467 / false /usr/sbin/nologin 467 !* polkitd true WWW daemon apache 498 /var/lib/wwwrun false 1 /usr/sbin/nologin 499 ! wwwrun true User for rpcbind 460 /var/lib/empty false /usr/sbin/nologin 460 !* rpc true systemd Time Synchronization 463 / false 1 /usr/sbin/nologin 463 !* systemd-timesync true Minimalistic DHCP client 475 /var/lib/dhcpcd false /usr/sbin/nologin 493 ! dhcpcd true Postfix Daemon 51 /var/spool/postfix false /usr/sbin/nologin 51 !* postfix