I use Ubuntu’s Uncomplicated firewall because it is available on Ubuntu and it's very simple.
if ufw is not installed by default be sure to install it first.
|:: Author: Ryan Watson|
|:: Twitter: @gentlemanwatson|
|:: Version: 1.0|
|:: Credits: Credit to Syspanda.com and their Sysmon GPO article for the kick off point|
|:: ** IMPORTANT **|
|:: 1) Create a Sysmon folder with the SYSVOL share on your domain controller|
|:: 2) Download Sysmon from Microsoft and place both sysmon.exe and sysmon64.exe in|