Raspberry Pi Router And Firewall Using nftables

preview_player
Показать описание
Starting from scratch, setting up a Raspberry Pi to be used as a router and firewall using nftables.

Here is a pretty good diagram showing the packet flow and the hooks that I was trying to explain:

This link also gives a good explanation of it all:
Рекомендации по теме
Комментарии
Автор

One of the best live demonstrations I've seen. Very well done. I'm recommending this to the IT student I know.

DaveThompson_RocksLinux
Автор

Enjoyed this one! Love the technical side and you break it down relatively easily. Don't stop learning.

beethreeLIVE
Автор

Excellent guide.
I switched to nftables - simpler that iftables.
I'm using RPI4 (OverClocked to 2Ghz) + VLAN switch (or USB3 Ethernet) + pppoe + nftables + Pi OS Lite as my main router - works very well
Manages 1GbE forwarding iperf test
Install docker for more versatility.
Container with pihole for DNS & DHCP
Container with vnstat for traffic counting
Containers for samba, smokeping, homeassistant, grafana, openspeedtest, postgresql, mosqitto - less than 3% cpu utilization.
Much more fun that a TP-Link/MikroTik/router

mysystem
Автор

Excellent fast-paced walkthrough & explanations throughout. Thank you.

willhudgins
Автор

Highly informative video. I'm really considering going into networking when I finish my computer science degree this year. I was shocked that a lot of people in my class have never used Linux!! I think I would get the shakes if I went one day without using it :)

xandercode
Автор

Fantastic video!!! Been wanting to watch something like this, and see it being done for a while now. Legend!

gatty.
Автор

Thanks for this class. It's a little dense for me as autodidact but it's always interesting info. Seems like routing and making firewalls have a lot to understand and learn for me. Greetings from Spain

Davpedra
Автор

Haha, love the dig you snuck in at the whole NFT market!
Might have a go at this on a Pi to use as a mobile router/FW for use in the campervan that I've been (ever so slowly) building.

TheMadMagician
Автор

Nothing like KISS! I love how clean and simple this is without layers of cruft. I really don't use all the bells 'n whistles of my pfSense and will give this a try when I move next month. I will likely need a new modem to my ISP, since they don't have Xfinity in that area. So, that will be a great excuse to evaluate my networking.

Average_Geo
Автор

Appreciate the way you've approached this, familiar with iptables, not experimented with nftables and I've never taken the time to understand wtf is going on under the hood. Really nice explanation of routing and NAT stuff. Now I'm eying up one of those really neat sfp DSL modems you showed in the previous video.

lmaoroflcopter
Автор

Great tutorial as always, mate. Ordering another pi to try this one out myself. Cheers

hopegrant
Автор

Thanks for your videos! I really appreciate your hands-on approach to the presentation by also showing why things don't work.

mehtulpants
Автор

Man that was a great walk through, really interesting.

JimWattsHereNow
Автор

Really nice explanations - Thank you ! Great video!

vpl
Автор

Brilliant. Great teaching. Thank you for these tutorials.

garylovesbeer
Автор

Excellent explanation! Thank you for making these videos.

LauwersFreddy
Автор

Brilliant! Makes me want to ditch pfSense myself. You are great at these videos, thsnk you for posting them

fonte
Автор

Greetings Mr. Paul, thank you for the breakdown for this topic. Would it be possible to show your pinhole dns setup similarly?

paddler-snub
Автор

wow, what an amazing video, real stuff, no waste of time. The argument is complex, a drawing on a piece of paper would have helped me a bit. the only unclear part, at least for me, it your VLAN configuration. Can you draw it?
Compliments again, your channel is one of the few I have enabled the bell. Cheers from Italy.

g.s.
Автор

Great video. Reminds me of back in the early days of ADSL ~2000/2001 and I built a FreeBSD router with 2 NICs to connect pppoe and ipfilter firewall. It finally got retired and I switched to a Cisco 1801, then went Ubiquiti edgerouter when I got NBN FTTH.

TimSumpton
welcome to shbcf.ru