Nftables: Unterschied zwischen den Versionen

Aus xinux.net
Zur Navigation springen Zur Suche springen
Zeile 7: Zeile 7:
 
  table inet filter {
 
  table inet filter {
 
  }
 
  }
 +
=Create a chain for input traffic IPv4=
 +
*nft add chain inet filter input { type filter hook input priority 0\; }
 +
=A rule to check that all is fine (IPv4)=
 +
*nft add rule inet filter input counter accept

Version vom 12. November 2019, 11:23 Uhr

Install

  • apt-get install nftables

Create a basic IPv4 table

  • nft add table inet filter

List that table

  • nft list table inet filter
table inet filter {
}

Create a chain for input traffic IPv4

  • nft add chain inet filter input { type filter hook input priority 0\; }

A rule to check that all is fine (IPv4)

  • nft add rule inet filter input counter accept