Nftables: a new packet filtering engine
Nftables: a new packet filtering engine
Posted Mar 24, 2009 19:45 UTC (Tue) by flewellyn (subscriber, #5047)In reply to: Nftables: a new packet filtering engine by kaber
Parent article: Nftables: a new packet filtering engine
Too true on the "less flexible" bit. PF is a nice idea, but the OpenBSD folk did not add nearly as much flexibility to the system as iptables offers. Doing NAT with it is easy enough in the default setting, but more complex stuff, I found painful.
