Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

quick-start: update firewall tutorials to reflect nftables-based firewall commands #1063

Merged
merged 7 commits into from
Sep 13, 2023

Conversation

NickAnderegg
Copy link
Contributor

@NickAnderegg NickAnderegg commented Aug 24, 2023

I've written a new nftables-oriented firewall quick start guide, which aims to provide enough context for the reader to reason about the new firewall backend. I did a lot of testing with different variations on a fresh qotom box that was attached to my existing network on the WAN side and my laptop on the LAN side; this is the variant that touches on all the most important concepts while meeting the needs of a basic NAT gateway configuration.

The original sources for the base of my configuration were the current nftables firewall examples and the examples in netfilter configuration. The new nftables firewall could definitely use significantly more documentation, but I'll keep my PRs atomic.

Original message for reference:

Is anyone already focused on translating all of the iptables-based firewall CLI examples to nftables-based examples? If not, I'll take a swing at it this weekend. I'm a docs person who is currently migrating my home network from EdgeOS to VyOS, so I'll already be needing to figure out how most of the guides translate to the new API.

@aslanvyos
Copy link
Contributor

Hi, @NickAnderegg it is good news.

@fett0
Copy link
Contributor

fett0 commented Sep 4, 2023

@nicolas-fort

@NickAnderegg NickAnderegg marked this pull request as ready for review September 11, 2023 00:33
@NickAnderegg
Copy link
Contributor Author

I think this one is ready for review. The linter is going to fail, but it's because there's a super longer URL on the general-legacy.rst page.

@nicolas-fort
Copy link
Contributor

I like this one
👍

@rebortg rebortg merged commit 9688bca into vyos:master Sep 13, 2023
2 of 3 checks passed
@NickAnderegg NickAnderegg deleted the overview-nftables-translation branch September 13, 2023 19:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

Successfully merging this pull request may close these issues.

5 participants