-
Notifications
You must be signed in to change notification settings - Fork 121
Description
Is your feature request related to a problem? Please describe.
As far as I can tell, both the GUI and CLI use iptables to manipulate the netfilter firewall on Linux.
The packaged installers appear to disable the firewalld.service unit, presumably to prevent nftables rules conflicting with iptables rules. This results in any system / user firewalld configuration being unused as a result of the GUI / CLI installation.
Describe the solution you'd like
Update the GUI and CLI to use nftables (and firewalld if available) to make them compatible.
Additional context
As far as I know, most Linux distros have migrated from iptables to nftables. eg.:
https://wiki.debian.org/nftables
https://en.opensuse.org/openSUSE:Security_Features#Firewall
https://wiki.archlinux.org/title/Category:Firewalls
https://docs.fedoraproject.org/en-US/fedora/f32/release-notes/sysadmin/Networking/
and firewalld migrated from using the iptables backend to nftables many years ago:
https://firewalld.org/2018/07/nftables-backend
I hope this does not prove to be a too controversial request. Thanks.