Nftables

Aus xinux.net
Zur Navigation springen Zur Suche springen

Install

  • apt-get install nftables

Create a basic IPv4 table

  • nft add table inet filter

List that table

  • nft list table inet filter
table inet filter {
}

Create a chain for input traffic IPv4

  • nft add chain inet filter input { type filter hook input priority 0\; }

A rule to check that all is fine (IPv4)

  • nft add rule inet filter input counter accept