Clear, practical guides to Linux firewalling. From your first DROP rule to advanced nftables sets. No theory dumps — just working examples.
From zero to zero-trust, one rule at a time.
Understand chains, tables, targets, and policies. Build a basic server firewall from scratch in 15 minutes.
nftables is the successor. When to migrate, what's different, and how to translate your existing rules.
SNAT, DNAT, MASQUERADE — when to use each and how to set up a Linux router with proper NAT rules.
Prevent brute-force attacks with hashlimit, conntrack, and recent modules. Real-world rules for SSH and HTTP.
Every flag, every target, every match module. Printable, searchable, always up to date.
How Docker and kube-proxy manipulate iptables behind the scenes. Debug CNI issues like a pro.