[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: What is the best practice for a firewall for Debian Buster: iptables or nftables?



On Sat, Jun 20, 2020 at 10:48 <l0f4r0@tuta.io> wrote:
Hi,
...
Actually, as explained on https://wiki.debian.org/nftables, Buster uses an "iptables-nft layer (i.e, using iptables syntax with the nf_tables kernel subsystem). This also affects ip6tables, arptables and ebtables."
...

Oops, my bad.

...
You decide. iptables is being progressively superseded by nftables. However, the former is still heavily used.
nftables is the future, that's why I've chosen it.
...

I have no love for iptables and very little experience with it. So it seems I should remove the iptables package and install the nftables one. And I'll look into firewalld which I tried briefly some years ago.

Thanks so much.

Cheers!

-Tom

Reply to: