New Firewall for the Linux Kernel

The Netfilter development team’s Patrick McHardy has released an alpha version of nftables, a new firewall implementation for the Linux kernel, with a user space tool for controlling the firewall. nftables introduces a fundamental distinction between the user space defined rules and network objects in the kernel: the kernel component works with generic data such as IP addresses, ports and protocols and provides some generic operations for comparing the values of a packet with constants or for discarding a packet.

38 Comments

  1. 2009-03-20 11:12 pm
    • 2009-03-21 1:32 am
      • 2009-03-21 1:52 am
        • 2009-03-21 5:41 am
      • 2009-03-21 2:17 am
      • 2009-03-21 4:32 am
      • 2009-03-21 5:38 am
      • 2009-03-21 10:38 pm
    • 2009-03-21 5:38 am
  2. 2009-03-21 12:09 am
    • 2009-03-21 12:47 am
    • 2009-03-21 10:39 am
      • 2009-03-22 9:39 am
        • 2009-03-22 2:34 pm
          • 2009-03-22 8:35 pm
      • 2009-03-22 10:28 pm
        • 2009-03-23 8:40 am
          • 2009-03-23 9:54 am
    • 2009-03-21 2:45 pm
      • 2009-03-21 3:04 pm
        • 2009-03-21 3:55 pm
          • 2009-03-21 4:38 pm
          • 2009-03-21 4:56 pm
          • 2009-03-21 5:19 pm
          • 2009-03-21 8:09 pm
    • 2009-03-21 9:42 pm
      • 2009-03-21 10:36 pm
  3. 2009-03-21 7:27 am
    • 2009-03-21 10:29 pm
  4. 2009-03-21 8:15 am
    • 2009-03-21 8:19 am
      • 2009-03-22 11:37 pm
        • 2009-03-23 3:49 am
          • 2009-03-23 12:43 pm
    • 2009-03-21 10:44 am
      • 2009-03-21 12:37 pm
      • 2009-03-21 7:15 pm
      • 2009-03-23 3:53 am