Difference between revisions of "Nftables"
From Teknologisk videncenter
m |
m (→Links) |
||
Line 10: | Line 10: | ||
*[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4] | *[https://learning.oreilly.com/library/view/mastering-linux-security/9781837630516/Text/Chapter_4 mastering-linux-security - Chapter 4] | ||
[[Category:Firewall]][[Category:Linux]] | [[Category:Firewall]][[Category:Linux]] | ||
+ | |||
+ | =Interesting= | ||
+ | *https://wiki.nftables.org/wiki-nftables/index.php/GeoIP_matching |
Revision as of 13:19, 28 October 2023
- nft --check --file workstation.heth # Syntax check nft script
- iptables-translate -A INPUT -s 89.1.1.0/24 -j DROP # Translate iptables commands into nftables (Also ip6tables-translate)
- nft list ruleset # List nft configuration
- nft list tables # List tables in nfs (Not like iptables where they are separate)
- nft list table nat # List table in nft configuration
On Ubuntu see nft configuration examples in /usr/share/doc/nftables/examples