DevConf.cz 2016 has ended
Can’t make it to #DevConfCZ for any reason? You can still attend virtually: youtube.com/RedHatCzech
Back To Schedule
Saturday, February 6 • 12:20 - 13:00

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

nftables is the project that aims to replace the existing {ip,ip6,arp,eb}tables tools. nftables provides a new packet filtering framework and a new userspace utility. nftables is built upon the building blocks of the Netfilter infrastructure such as the existing hooks, the connection tracking system, the userspace queueing component and the logging subsystem.

The talk will explain some of the shortcomings of the existing iptables infrastructure, how these were addressed in nftables,
and highlight some of the nftables features over iptables for administrators.

I will also briefly cover advantages for deverlopers that wish to interact with packet filtering/nat setup in a programmatic fashion.


Florian Westphal

Linux Kernel Engineer, Red Hat
I am a contributor to the Linux kernel network stack, in paticular netfilter. I am also a member of the netfilter core team which also maintains various userspace tools and libraries, such as iptables, nftables, conntrack-tools and ulogd. I am employed by Red Hat.

Saturday February 6, 2016 12:20 - 13:00 CET
e. E104 (72 places)