Difference between revisions of "Nftables"
From Teknologisk videncenter
m |
m |
||
Line 2: | Line 2: | ||
*iptables-translate -A INPUT -s 89.1.1.0/24 -j DROP # Translate [[iptables]] commands into [[nftables]] (Also ip6tables-translate) | *iptables-translate -A INPUT -s 89.1.1.0/24 -j DROP # Translate [[iptables]] commands into [[nftables]] (Also ip6tables-translate) | ||
*nft list ruleset # List nft configuration | *nft list ruleset # List nft configuration | ||
+ | *nft list tables # List tables in nfs (Not like iptables where they are separate) | ||
+ | *nft list table nat # List table in nft configuration | ||
=Links= | =Links= | ||
*[https://wiki.nftables.org/wiki-nftables/index.php/Quick_reference-nftables_in_10_minutes Quick reference-nftables in 10 minutes ] | *[https://wiki.nftables.org/wiki-nftables/index.php/Quick_reference-nftables_in_10_minutes Quick reference-nftables in 10 minutes ] | ||
*[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4] | *[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4] | ||
[[Category:Firewall]][[Category:Linux]] | [[Category:Firewall]][[Category:Linux]] |
Revision as of 13:02, 28 October 2023
- nft --check --file workstation.heth # Syntax check nft script
- iptables-translate -A INPUT -s 89.1.1.0/24 -j DROP # Translate iptables commands into nftables (Also ip6tables-translate)
- nft list ruleset # List nft configuration
- nft list tables # List tables in nfs (Not like iptables where they are separate)
- nft list table nat # List table in nft configuration