Difference between revisions of "Nftables"

From Teknologisk videncenter
Jump to: navigation, search
m
m (Links)
Line 10: Line 10:
 
*[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4]
 
*[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4]
 
[[Category:Firewall]][[Category:Linux]]
 
[[Category:Firewall]][[Category:Linux]]
 +
 +
=Interesting=
 +
*https://wiki.nftables.org/wiki-nftables/index.php/GeoIP_matching

Revision as of 13:19, 28 October 2023

  • nft --check --file workstation.heth # Syntax check nft script
  • iptables-translate -A INPUT -s 89.1.1.0/24 -j DROP # Translate iptables commands into nftables (Also ip6tables-translate)
  • nft list ruleset # List nft configuration
  • nft list tables # List tables in nfs (Not like iptables where they are separate)
  • nft list table nat # List table in nft configuration

On Ubuntu see nft configuration examples in /usr/share/doc/nftables/examples

Links

Interesting