[DNG] my experience upgrading to NFT

2020-08-02 Thread Thomas Groman via Dng
I upgraded one of my larger and more complex servers from ASCII to Beowulf. Switching to NFT was very easy after the upgrade. Just create the rules, (have flush have the beginning), remove the iptables if-pre-up hook if you made one, copy the example init script from /usr/share/doc/nftables/example

Re: [DNG] my experience upgrading to NFT

2020-08-02 Thread Hendrik Boom
On Fri, Jul 31, 2020 at 06:44:16PM -0700, Thomas Groman via Dng wrote: > I upgraded one of my larger and more complex servers from ASCII to > Beowulf. Switching to NFT was very easy after the upgrade. Just create What is NFT? -- hendrik > the rules, (have flush have the beginning), remove the ip

Re: [DNG] my experience upgrading to NFT

2020-08-02 Thread Ian Zimmerman
On 2020-08-02 17:00, Hendrik Boom wrote: > > I upgraded one of my larger and more complex servers from ASCII to > > Beowulf. Switching to NFT was very easy after the upgrade. Just > > create > > What is NFT? nftables, the slowly arriving successor to iptables. -- Ian __

Re: [DNG] my experience upgrading to NFT

2020-08-02 Thread Hendrik Boom
On Sun, Aug 02, 2020 at 03:36:46PM -0700, Ian Zimmerman wrote: > On 2020-08-02 17:00, Hendrik Boom wrote: > > > > I upgraded one of my larger and more complex servers from ASCII to > > > Beowulf. Switching to NFT was very easy after the upgrade. Just > > > create > > > > What is NFT? > > nftable

Re: [DNG] my experience upgrading to NFT

2020-08-02 Thread Simon Walter
On 2020-08-03 07:36, Ian Zimmerman wrote: > On 2020-08-02 17:00, Hendrik Boom wrote: >> What is NFT? > > nftables, the slowly arriving successor to iptables. > https://wiki.debian.org/nftables I've been using Shorewall for years. I only just now learned that: https://sourceforge.net/p/shorewall