Difference between revisions of "Main Page"

From nftables wiki
Jump to navigation Jump to search
m (add 2nft to 'Getting started' (if that is the wrong section please move it))
Line 20: Line 20:
* [[Troubleshooting|Troubleshooting and FAQ]]
* [[Troubleshooting|Troubleshooting and FAQ]]
* [[Quick reference-nftables in 10 minutes|Quick reference, nftables in 10 minutes]]
* [[Quick reference-nftables in 10 minutes|Quick reference, nftables in 10 minutes]]
* [https://2nft.alemayhu.com/ Translate your iptables rules from a web app]

= Basic operation =
= Basic operation =

Revision as of 18:45, 10 March 2017

Welcome to the nftables HOWTO documentation page. Here you will find documentation on how to build, install, configure and use nftables.

This documentation was initially started by Eric Leblond, known as the nftables quick HOWTO, and it has been extended and enhanced by Pablo Neira Ayuso.

If you have any suggestion to improve it, please send your comments to Netfilter users mailing list <netfilter@vger.kernel.org>.

Note that this documentation is still under development, so consider this work in progress.


Getting started

Basic operation

Supported selectors for packet matching

Possible actions on packets

Note that, unlike iptables, you can perform several actions in one single rule.

Advanced data structures for performance packet classification

You will have to redesign your rule-set to benefit from these new nice features:

If you are already using ipset in your iptables rule-set, that transition may be a bit more simple to you.


Development progress



To the NLnet foundation for initial sponsorship of this HOWTO: