Packet alteration framework for Linux and the umbrella project for software of the same
Netfilter
Initial release
26 August 1999; 24 years ago (1999-08-26) (Linux 2.3.15)
Stable release
6.8.9[1]
/ 2 May 2024; 4 days ago (2 May 2024)
Written in
C
Operating system
Linux
Type
Linux kernel module
Packet filter/firewall
License
GNU GPL
Website
netfilter.org
Netfilter is a framework provided by the Linux kernel that allows various networking-related operations to be implemented in the form of customized handlers. Netfilter offers various functions and operations for packet filtering, network address translation, and port translation, which provide the functionality required for directing packets through a network and prohibiting packets from reaching sensitive locations within a network.
Netfilter represents a set of hooks inside the Linux kernel, allowing specific kernel modules to register callback functions with the kernel's networking stack. Those functions, usually applied to the traffic in the form of filtering and modification rules, are called for every packet that traverses the respective hook within the networking stack.[2]
^Greg Kroah-Hartman (2 May 2024). "Linux 6.8.9". Retrieved 2 May 2024.
^"netfilter/iptables project homepage - The netfilter.org project". netfilter.org. Retrieved 2014-07-04.
Netfilter is a framework provided by the Linux kernel that allows various networking-related operations to be implemented in the form of customized handlers...
on 19 January 2014. nftables replaces the legacy iptables component of Netfilter. Among the advantages of nftables over iptables is less code duplication...
packet filter rules of the Linux kernel firewall, implemented as different Netfilter modules. The filters are organized in different tables, which contain...
Uncomplicated Firewall (UFW) is a program for managing a netfilter firewall designed to be easy to use. It uses a command-line interface consisting of...
LVS components depend upon the Linux Netfilter framework, and its source code is available in the net/netfilter/ipvs subdirectory within the Linux kernel...
built on top of the Netfilter. IPVS is merged into versions 2.4.x and newer of the Linux kernel mainline. Linux portal Netfilter and nftables Network...
perform multiple actions whenever an abusive IP address is detected: update Netfilter/iptables or PF firewall rules, TCP Wrapper's hosts.deny table, to reject...
of the free software project Osmocom and was formerly involved in the netfilter/iptables and Openmoko projects. He is a member of the Chaos Computer Club...
a similar manner to process network events within the kernel through NetFilter. When such functionality is not provided, a special form of hooking employs...
iptables written to ease the customization of the Linux kernel's firewall netfilter. FireHOL is free software and open-source, distributed under the terms...
an interface to transport packets from netfilter to user-space. NETLINK_ROUTE6 NETLINK_TAPBASE NETLINK_NETFILTER NETLINK_TCPDIAG NETLINK_XFRM NETLINK_XFRM...
Unix-like operating systems ipfirewall (ipfw): FreeBSD-native packet filter Netfilter with iptables/nftables: the Linux packet filter NPF: NetBSD-native packet...
Linux kernels, this is achieved by packet filter rules in the iptables or netfilter kernel components. BSD and macOS operating systems prior to Yosemite (OS...
to desist from distributing Netfilter's GPL'ed software in violation of the terms of the GPL. Harald Welte, of Netfilter, was represented by ifrOSS co-founder...
Foundation's Internet Hardening Fund "netfilter/iptables project homepage - About the netfilter/iptables project". netfilter.org. Retrieved 2024-02-12. Libre-SOC...
Protocol with the PREFIX64 extension. Jool OpenWrt via the jool-tools-netfilter opkg package Tayga MacOS via the "Create NAT64 Network" in internet sharing...
"cgroup: convert to kernfs". Linux kernel mailing list. 28 January 2014. "netfilter: x_tables: lightweight process control group matching". 23 April 2014...
provides firewall features by acting as a front-end for the Linux kernel's netfilter framework. firewalld's current default backend is nftables. Prior to v0...
8 ed.). Archived from the original on 2012-02-16. Retrieved 2009-02-08. "netfilter/iptables project homepage". 2009-02-06. Retrieved 2009-02-08. Free and...
if connections are idle for longer than the time-out Computer security Netfilter Goralski, Walter (12 May 2017). The illustrated network: How TCP/IP works...
programming language that allows developers to write extensions to the Iptables/Netfilter components of Linux using a simple scripting language based on Reverse...
original on 3 February 2012. Retrieved 15 February 2013. Harald Welte, netfilter archeology: 18 years from 2.3 to 4.x, 5 December 2017 "Linux-Kernel Archive:...