Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
linux_router:netfilter [2024-06-23 Sun wk25 09:10] – [IPTables and Connection Tracking] baumkp | linux_router:netfilter [2024-06-23 Sun wk25 09:11] (current) – baumkp | ||
---|---|---|---|
Line 50: | Line 50: | ||
=====IPTables and Netfilter===== | =====IPTables and Netfilter===== | ||
The following is taken from Digitalocean [[https:// | The following is taken from Digitalocean [[https:// | ||
+ | |||
++++ tldr| | ++++ tldr| | ||
+ | |||
====IPTables Tables and Chains==== | ====IPTables Tables and Chains==== | ||
Line 130: | Line 132: | ||
The system checks each packet against a set of existing connections. It will update the state of the connection in its store if needed and will add new connections to the system when necessary. Packets that have been marked with the '' | The system checks each packet against a set of existing connections. It will update the state of the connection in its store if needed and will add new connections to the system when necessary. Packets that have been marked with the '' | ||
- | ++++ | ||
===Available States=== | ===Available States=== | ||
Line 144: | Line 145: | ||
The states tracked in the connection tracking system allow administrators to craft rules that target specific points in a connection’s lifetime. This provides the functionality needed for more thorough and secure rules. | The states tracked in the connection tracking system allow administrators to craft rules that target specific points in a connection’s lifetime. This provides the functionality needed for more thorough and secure rules. | ||
+ | ++++ | ||
====Some references==== | ====Some references==== |