24 ms·
Coming from FreeBSD and pf, all Linux firewalls I’ve tried feels clunky _at best_ UX-wise. I’d love a Linux firewall configured with a sane config file and I t
by bingo-bongo 10mo ago
Coming from FreeBSD and pf, all Linux firewalls I’ve tried feels clunky _at best_ UX-wise.
I’d love a Linux firewall configured with a sane config file and I think BSD really nailed it. It’s easy to configure and still human readable, even for more advanced firewall gateway setups with many interfaces/zones.
A have no doubt that Linux can do all the same stuff feature-wise, but oh god the UX :/
- Hendrikto 10mo agoHave you tried nftables? It is so much nicer than iptables.
- bingo-bongo 10mo agoYeah, I'm already using nftables and I agree that it's better than eg. iptables (or the numerous frontends for iptables) and probably the best bet we have at this point - but honestly, it's still far from the UX I get from pf - unfortunately :/
- ptman 10mo agonftables is configured like that https://wiki.nftables.org/wiki-nftables/index.php/Simple_ruleset_for_a_workstation https://wiki.nftables.org/wiki-nftables/index.php/Simple_rul...
- adrian_b 10mo agoI completely agree. I have been using for many decades both Linux and FreeBSD, on many kinds of computers. When comparing Linux with FreeBSD, I probably do not find anything more annoying on Linux than its networking configuration tools. While I am using Linux on my laptops and desktops and on some servers with computational purposes, on the servers that host networking services I much prefer FreeBSD, for the ease of administration.