Skip to content
Open sourceActive

Omarchy Firewall

Your ufw rules in the Omarchy bar, with your password in front of every change.

platform
Linux · Omarchy
stack
QML, Perl, ufw, polkit
license
MIT
install
omarchy plugin add https://github.com/illegalstudio/omarchy-firewall.git

Overview

Omarchy enables ufw by default. That is a good baseline, but it adds friction to local development: start Expo or php artisan serve --host=0.0.0.0 and another device needs a port that you then have to remember to close. Omarchy Firewall keeps the rules one click away in the bar, so you can open exactly the port you need and close it again without leaving your flow.

Reading needs no privileges: the widget reads the same world-readable files that ufw status renders, with strict limits on what it parses. Every change runs through pkexec timeout ufw with a validated command, so Omarchy's own password dialog stands in front of every enable, disable, add and delete. One prompt per change, nothing cached in between.

What it does

  • Firewall state at a glance in the bar
  • The rule list in a keyboard-driven panel
  • A guided form to open a port, a range or an application profile
  • Reads with no privileges, from the same files ufw status uses
  • Every change goes through pkexec and the Omarchy password prompt

More from illegal studio