SHARE
Facebook X Pinterest WhatsApp

LinuxSecurity.com: Linux Kernel 2.4 Firewalling Matures: netfilter

Written By
DW
Dave Wreski
Feb 15, 2001

“In yet another set of advancements to the kernel IP packet
filtering code, netfilter allows users to set up, maintain, and
inspect the packet filtering rules in the new 2.4 kernel. This
document explains those changes and tips on how to get
started.”

“The netfilter subsystem is a complete rewrite of previous
packet filtering implementations including ipchains and ipfwadm.
Netfilter provides a large number of improvements, and it has now
become an even more mature and robust solution for protecting
corporate networks.”

“Netfilter provides a raw framework for manipulating packets as
they traverse through various parts of the kernel. Part of this
framework includes support for masquerading, standard packet
filtering, and now more complete network address translation. It
even includes improved support for load balancing requests for a
particular service among a group of servers behind the
firewall.”

“The stateful inspection features are especially powerful.
Stateful inspection provides the ability to track and control the
flow of communication passing through the filter. The ability to
keep track of state and context information about a session makes
rules simpler and tries to interpret of higher-level
protocols.”


Complete Story

DW

Dave Wreski

Recommended for you...

A Thorough Approach to Improve the Privacy and Security of Your Linux PC
Damien
Oct 24, 2024
Several Russian Maintainers Removed From Linux Kernel Due To Compliance Concerns
Senthil Kumar
Oct 23, 2024
OpenSSH Splits Again: New Authentication Binary Unveiled
Bobby Borisov
Oct 16, 2024
13 Best Free and Open Source Anti-Malware Tools
webmaster
Oct 14, 2024
Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.