Difference between revisions of "Main Page"

From nftables wiki
Jump to navigation Jump to search
(Removing soon to be broken link)
(→‎Basic operation: add link to moving from ipset to nftables)
Line 31: Line 31:
* [[Ruleset debug/tracing]]
* [[Ruleset debug/tracing]]
* [[Moving from iptables to nftables]]
* [[Moving from iptables to nftables]]
* [[Moving from ipset to nftables]]

= Supported selectors for packet matching =
= Supported selectors for packet matching =

Revision as of 12:09, 1 February 2018

Welcome to the nftables HOWTO documentation page. Here you will find documentation on how to build, install, configure and use nftables.

If you have any suggestion to improve it, please send your comments to Netfilter users mailing list <netfilter@vger.kernel.org>.


Getting started

Basic operation

Supported selectors for packet matching

Possible actions on packets

Note that, unlike iptables, you can perform several actions in one single rule.

Advanced data structures for performance packet classification

You will have to redesign your rule-set to benefit from these new nice features:

If you are already using ipset in your iptables rule-set, that transition may be a bit more simple to you.


Development progress

External links

Watch some videos:

Additional documentations and articles:


To the NLnet foundation for initial sponsorship of this HOWTO:


To Eric Leblond, for boostrapping the Nftables quick howto in 2013.