Re: C7, firewalld and rich rules

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



On 1/30/19 10:05 PM, Simon Matter via CentOS wrote:
Did you look at Shorewall? IMHO that's what is best used in such
situations and it works since many years now.


shorewall doesn't support nftables, which is largely the point of firewalld:  The Linux firewall system is currently undergoing yet another deprecation and migration from iptables to nftables. firewalld should remain stable during the migration process.  As far as I know, there are no plans to support nftables under shorewall, so new users will most likely throw away any investment they make in learning and implementing shorewall.

_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
https://lists.centos.org/mailman/listinfo/centos




[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]


  Powered by Linux