Nftables
Jump to navigation
Jump to search
netfilter (nftables)
nftables is the successor of iptables. The netfilter project enables packet filtering, network address [and port] translation (NA[P]T), packet logging, userspace packet queueing and other packet mangling.
Netfilter tables (nftables) is the default firewall shipped with modern Linux distros. It's available on Fedora and RHEL 8, the latest Debian, and many others.[1]
monitoring netfilter
- nftwatch - https://github.com/flyingrhinonz/nftwatch provides several features like reorders and reformats the nftables output to make it more readable