logoalt Hacker News

0xCMPyesterday at 5:36 PM1 replyview on HN

My main reason is that nft applies configs atomically. It also has very good tracing/debugging features for figuring out how and why things aren't working as expected.

That said, I think many distros are shipping `iptables` as the wrapper/compatibility layer over nft now anyways.


Replies

znpyyesterday at 6:06 PM

as somebody that's not a network engineer by day and has barely grokked iptables, could you recommend some resources for learning nftables ?