[Bug 1434] New: Usability improvements, enabling creation of complex firewalls

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Thu Jun 18 10:53:40 CEST 2020


https://bugzilla.netfilter.org/show_bug.cgi?id=1434

            Bug ID: 1434
           Summary: Usability improvements, enabling creation of complex
                    firewalls
           Product: nftables
           Version: unspecified
          Hardware: x86_64
                OS: All
            Status: NEW
          Severity: enhancement
          Priority: P5
         Component: nft
          Assignee: pablo at netfilter.org
          Reporter: bugzillanetfilterorg at vespian.net

There is a community around iptables abstraction layer `Ferm`:
https://github.com/MaxKellermann/ferm

This tool is great when creating complex firewalls, and for e.g. integrating
firewall configuration with automation tools like Ansible. We would like to
switch to using nftables as this is the future, but there is still some
functionality gaps that prevent us from doing so.

In the following discussion: https://github.com/MaxKellermann/ferm/issues/35
there are quite a few good points made by the Ferm users, namely:
* from user horazont:
https://github.com/MaxKellermann/ferm/issues/35#issuecomment-486644235
* from user nurupo:
https://github.com/MaxKellermann/ferm/issues/35#issuecomment-644691310

I would like to bring this discussion to your attention and see if they could
be addressed. Thank you in advance for having a look and voicing your opinions. 

pr

-- 
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20200618/4c57f7b9/attachment.html>


More information about the netfilter-buglog mailing list