Remix.run Logo
bingo-bongo 4 days ago

Coming from FreeBSD and pf, all Linux firewalls I’ve tried feels clunky _at best_ UX-wise.

I’d love a Linux firewall configured with a sane config file and I think BSD really nailed it. It’s easy to configure and still human readable, even for more advanced firewall gateway setups with many interfaces/zones.

A have no doubt that Linux can do all the same stuff feature-wise, but oh god the UX :/

adrian_b 4 days ago | parent | next [-]

I completely agree.

I have been using for many decades both Linux and FreeBSD, on many kinds of computers.

When comparing Linux with FreeBSD, I probably do not find anything more annoying on Linux than its networking configuration tools.

While I am using Linux on my laptops and desktops and on some servers with computational purposes, on the servers that host networking services I much prefer FreeBSD, for the ease of administration.

ptman 4 days ago | parent | prev | next [-]

nftables is configured like that https://wiki.nftables.org/wiki-nftables/index.php/Simple_rul...

Hendrikto 4 days ago | parent | prev [-]

Have you tried nftables? It is so much nicer than iptables.

bingo-bongo 4 days ago | parent [-]

Yeah, I'm already using nftables and I agree that it's better than eg. iptables (or the numerous frontends for iptables) and probably the best bet we have at this point - but honestly, it's still far from the UX I get from pf - unfortunately :/