mrash / fwsnort

Application Layer IDS/IPS with iptables
http://www.cipherdyne.org/fwsnort/
GNU General Public License v2.0
73 stars 15 forks source link

Investigate nftables support #5

Open mrash opened 10 years ago

mrash commented 10 years ago

Linux firewalling may move towards nftables, so this needs to be investigated for fwsnort compatibility.

kees-closed commented 4 years ago

Fedora, CentOS/RHEL 8, Debian 10, and probably more have transitioned towards nftables. All of them but Debian 10 uses firewalld as the nftables wrapper, for now.

However, having raw nftables support would be best I guess.