I experimented a little with nftables, even though it's not clear whether it will ever completely replace iptables, especially after the news about bpfilter, but it was an interesting exercise anyways.
After converting some iptables rules, I looked at how others were using nftables to write a more idiomatic configuration; I found some ruleset for a host firewall, and I tried to add them to my configuration.
When testing those rules I found that some ICMPv6 packets were not being matched as I would have expected.
Commenti recenti
14 settimane 5 giorni fa
14 settimane 5 giorni fa
14 settimane 5 giorni fa
30 settimane 6 giorni fa
1 anno 37 settimane fa
2 anni 12 settimane fa
2 anni 26 settimane fa
2 anni 26 settimane fa
2 anni 27 settimane fa
2 anni 43 settimane fa