Ukukhishwa kwesihlungi sephakethe le-iptables 1.8.10

Ikhithi yamathuluzi yokuphatha iphakethe yesihlungi iptables 1.8.10 isikhishiwe, ukuthuthukiswa kwayo okusanda kugxila ezingxenyeni zokugcina ukuhambisana okubuyela emuva - iptables-nft kanye ne-ebtables-nft, ehlinzeka ngezinsiza ezine-syntax yomugqa womyalo ofanayo nama-iptables nama-ebtables, kodwa ukuhumusha imithetho ewumphumela ibe yi-nftables bytecode. Isethi yasekuqaleni yezinhlelo ze-iptables, okuhlanganisa ama-ip6tables, ama-arptables nama-ebtable, ahoxiswa ngo-2018 futhi asevele athathelwa indawo ama-nftables ekusabalaliseni okuningi.

Enguqulweni entsha:

  • Insiza ye-xtables-translate yengeze usekelo lwemithetho yokufaka ecacisa inombolo yenkomba (iguqulelwe kumithetho ye-ntf 'faka umthetho ... index N').
  • Kungezwe usekelo lwamathebula e-broute (umzila webhuloho) ku-ebtables-nft.
  • Ukukhishwa kokulungisa iphutha kwensiza ye-nft-variants, enikwe amandla ngokucacisa inketho ethi "-v" izikhathi ezimbalwa, ibonisa amasethi atholakalayo.
  • Kwengezwe ukusekelwa kwamagama "umbuzo-mlaleli-mlaleli", "umbiko-umlaleli-mld" kanye "nomlaleli-wenziwe-mld" ukuze ubhekisele kuzinhlobo zemilayezo ye-ICMPv6 130, 131 kanye ne-132.
  • Iqinisekisa ukuthi izinkulumo ze-"meta mark" zicutshungulwa kahle futhi ziguqulelwa kumithetho ethi "-j MARK", okungase kudingeke ukuze kuhlanganiswe ama-nftable nama-iptables-nft kuthebula elifanayo.
  • Amaphutha anqwabelene asusiwe.

Engeza amazwana