IPTABLES Guidance - Seeking confirmation of tidbits before rebuilding my firewall

(EDIT: Highlight where conntrack module is “inserted”. Added note that NAT is unwarranted for outgoing packets destined for “localhost”. )

As mentioned before, I will be re-working or re-building my Desktop personal IPTABLES firewall.

I felt it to be a necessary first step to make sure the foundational facts, as I understand them, to be correct.

To that end, I have compiled the attached spreadsheet, as a vehicle to present some of IPTABLES fundamental concepts.

This fourth version ( v 0.4 ) fifth version ( v 0.5 ) is offered, with the request for simple confirmation on sheets 1 and 2, and a request for feedback and references to sources for any corrections applicable. I’ve tried the best I can to make sure I got this 3rd sheet correct, but it may have some errors, given that I have tried to consolidate the info from quite a range of PDFs out there.

Thank you in advance for feedback.


Snapshots of sheets:

Preview of Sheet 1

Preview of Sheet 2

Preview of Sheet 3

Preview of Sheet 4

Preview of Sheet 5

Preview of Sheet 6

Spreadsheet Original for the above
( LibreOffice Spreadsheet )



Please note that I will be “re-formatting” these guidance tables as HTML + CSS + JavaScript. The post what that “hard pivot” was communicated is found here, along with a tool for preserving the “time investment” by converting such an *.ods file into multiple HTML pages for each Tab/Sheet.

5 Likes

Thank you @ericmarceau ; you have been preparing and sharing some REALLY good stuff! Much appreciated!

1 Like