forgive please, my lack of terminology or any concept. im not pro.
am i missing something? there is very little talk about a fairly new firewall frontend for nftables. it seems nice?
package foomuuri-firewalld also uses dbus.
i use virt-manager and have NAT for network, it uses virbr0 interface. i noticed other people mentioning difficulty setting up NAT with nftables?
libvirt’s xml files in the firewalld folder show protocol names that i thought needed to be adapted for foomuuri to process (like ‘domain’ / ‘domain-s’ instead of ‘dns’, and ‘dhcp-client’ / ‘dhcp-server’ instead of ‘dhcp’, etc…) is that correct?
systemd showed services dont cancel eachother out (nftables and foomuuri load and start together, but nftables have to be manually enabled.) is that a conflict, or mistake?
any advice to secure NAT with nftables or any of the above mentioned. or even just thoughts…
thanks for reading.
chozo
finally, any advice on how to block specific ip’s this way, or the firewalld way.