Protecting Incoming Traffic with Nftables

Поделиться
HTML-код
  • Опубликовано: 24 ноя 2024

Комментарии • 54

  • @aliroumie3775
    @aliroumie3775 9 месяцев назад +8

    Best nftables guide on the entire web. A master class!

    • @LinuxCloudHacks
      @LinuxCloudHacks  9 месяцев назад +1

      Thank you! Glad you liked it. I’m planning to release few more videos on that topic like tracing and logging, some tips etc. so please stay tuned.

  • @dcoffey48
    @dcoffey48 Год назад +1

    This is the best explanation of a simple nftables firewall rule I have seen so far. Very well presented and logically structured progression. Keep it up.

  • @PortsmouthHarbourBoats
    @PortsmouthHarbourBoats Месяц назад

    Thank you for your videos Filip. Just a home lab user here and have learnt so much that I've been able to build my own firewall with Alpine Linux + NF and just the rues I need, now I understand how it works from your tuition. Your videos are the best on the internet. Easy to follow with practical examples and no BS.

    • @LinuxCloudHacks
      @LinuxCloudHacks  Месяц назад

      Great to hear! Nice work on the firewall! Keep experimenting as it's the best way to learn!

  • @QAZAQ-6666
    @QAZAQ-6666 8 месяцев назад +1

    Thanks 💯

  • @chasim1982
    @chasim1982 27 дней назад +1

    Great Content Sir, really learned thanks a lot

  • @rickpoeling6831
    @rickpoeling6831 9 месяцев назад

    Thank you for this excellent introduction on nftables. It's way better then all of the others I've watched.

  • @ghettosapien1392
    @ghettosapien1392 10 месяцев назад

    OUTSTANDING! This is the best tutorial of nftables I've seen.

    • @LinuxCloudHacks
      @LinuxCloudHacks  10 месяцев назад +1

      Wow, thanks! It'm trying to build a NFtables series. In few days there will be a video about DNAT, then load balancing, another one about logging and tracing. Stay tuned!

    • @ghettosapien1392
      @ghettosapien1392 10 месяцев назад

      @@LinuxCloudHacks I am starting an MSSP for small and medium sized business. I'm planning to offer a Linux Firewall as an option to clients who can't afford FortiGate or Palo Alto. I've set up IPTables firewalls but NFTables is new to me. Your videos are very informative and thorough. I followed your examples and got a basic NFTables firewall up and running on my first try.
      It would be very helpful if you gave some examples of how to use the FORWARD chain to set up DMZ and LAN configurations using NFTables. Just a suggestion. Again, thanks for providing these tutorials.

    • @LinuxCloudHacks
      @LinuxCloudHacks  8 месяцев назад +1

      Certainly! I'll work on such video.

  • @dpi3
    @dpi3 5 месяцев назад +1

    that was so freaking sweet! thanks will be watching the whole playlist rn

    • @LinuxCloudHacks
      @LinuxCloudHacks  5 месяцев назад

      There are few more nftables videos on my todo list so please stay tuned!

  • @siddarthkumar1836
    @siddarthkumar1836 8 месяцев назад

    I am glad I watched this video! So far the best resource and examples on nftables usage and optimisation.
    Thank you very much.

  • @miketancsa
    @miketancsa 7 месяцев назад

    Great video! Really well organized. I come to it from a FreeBSD pf world and this was very understandable in its approach

  • @astrogerard
    @astrogerard 7 месяцев назад +1

    Thanks for this great video. Glad I found this channel and subscribed of course :-)

  • @SunshineFromWithin
    @SunshineFromWithin 21 день назад

    Great video!

  • @davidbrook1999
    @davidbrook1999 8 месяцев назад

    Many thanks for a video that finally made sense of nftables. I really wish to convert my pf / openbsd router to Linux for better VM hardware passthrough features. This is the first video that has clarified the structure of nftables. Thank you, and very well done. I can now proceed... ;)

    • @LinuxCloudHacks
      @LinuxCloudHacks  8 месяцев назад

      Glad it helped! Good luck in setting your new FW!

  • @emilmalinov2893
    @emilmalinov2893 6 месяцев назад

    Great video. Very clear explanation. Helped me a lot.

    • @LinuxCloudHacks
      @LinuxCloudHacks  6 месяцев назад

      Great to hear! There will be few more videos on NFT so stay tuned!

  • @markvincent6275
    @markvincent6275 7 месяцев назад

    Well done! Thanks for the video

    • @LinuxCloudHacks
      @LinuxCloudHacks  7 месяцев назад

      Glad you liked it! I'll be releasing few more videos about NFTables so please stay tuned.

  • @arnejosteineidem3089
    @arnejosteineidem3089 Год назад

    Good work!

  • @familytamelo8140
    @familytamelo8140 2 месяца назад

    Thanks!

  • @JonahTheWhite
    @JonahTheWhite Месяц назад

    Can you show how to do these firewall settings on an OpenWRT router's web interface (LUCI)?

    • @LinuxCloudHacks
      @LinuxCloudHacks  Месяц назад

      Hi. It's been a while since I've played with OpenWrt but I believe when you use the web interface you are essentially modifying configuration file located at /etc/config/firewall that in turn is using fw4 rule builder to translate everything to nftables hence some stuff I'm talking about is already incorporated into the firewall and you are just adding individual allow rules. If I find some time I'm planning to create a video on building a general firewall so please stay tuned! Thanks!

  • @andreymozjuhin6220
    @andreymozjuhin6220 3 месяца назад

    where can I view the entered commands in text form?

    • @LinuxCloudHacks
      @LinuxCloudHacks  3 месяца назад

      Sorry for the form. I did copy/paste commands below.
      github.com/filip-lebiecki/nftables/blob/main/nftables-1.md

    • @andreymozjuhin6220
      @andreymozjuhin6220 3 месяца назад

      @@LinuxCloudHacks Hello, thank you for responding. And how do I get the text output of commands for the rest of the lessons? I think it will be useful for everyone, it is not convenient to rewrite commands from the screen. In general, you have excellent lessons, the most understandable visual ones that I have seen. thank you.

  • @manjilunnobi
    @manjilunnobi 6 месяцев назад

    Ubuntu nftable firewall videos
    Port create
    Input or output
    Forward
    All kind or secure

    • @LinuxCloudHacks
      @LinuxCloudHacks  5 месяцев назад

      For sure I'll be doing more videos! Stay tuned!

  • @familytamelo8140
    @familytamelo8140 2 месяца назад

    Like, subscribe!

  • @AdrianuX1985
    @AdrianuX1985 8 месяцев назад

    +1

  • @raunakchhatwal5350
    @raunakchhatwal5350 4 месяца назад

    Is it just me or this DSL makes no sense? It's just a bunch of keywords that make on sense on its face. E.g.: "ct state new ip saddr . tcp dport @allowed_ips counter name cnt_ssh accept".

    • @raunakchhatwal5350
      @raunakchhatwal5350 4 месяца назад

      *no

    • @LinuxCloudHacks
      @LinuxCloudHacks  3 месяца назад

      Sorry you feel that way. This configuration is specific to NFTables Firewall. I agree. It's not easy to follow.