Skip to content
whatismyalternative

netfilter.org (netfilter/iptables project)

Community-driven open-source project providing packet filtering software for the Linux 2.4

Visit netfilter.org (netfilter/iptables project)

netfilter is a community-driven, free and open-source project providing packet filtering software for Linux 2.4.x and later kernels. It addresses the need to filter packets, perform network address and port translation, log packets, queue packets to userspace, and otherwise manipulate traffic. The netfilter hooks form a framework inside the Linux kernel that lets kernel modules register callback functions at points along the network stack, invoked for each packet passing through.

The project is commonly associated with iptables, a generic firewalling tool where rules combine classifiers (matches) with an action (target), and its successor nftables, which offers more flexible and scalable packet classification. Capabilities include stateless and stateful filtering for IPv4 and IPv6, NAT/NAPT, packet logging, userspace queueing, and header manipulation such as altering TOS/DSCP/ECN bits. nftables provides a single tool with consistent syntax, transactional kernel-side ruleset updates, configurable base chain hooks and priorities, ingress and egress hooks, flowtables, and JSON input and output for scripting. Supporting libraries and tools include libnftnl, libnfnetlink, libmnl, libnetfilter_conntrack, libnetfilter_queue, libnetfilter_log, conntrack-tools, ipset, ulogd, and xtables-addons.

The project is intended for system administrators and developers building internet firewalls, highly available firewall clusters, NAT and masquerading setups, transparent proxies, and QoS or policy routing configurations. Software is released under the GNU General Public License version 2 (GPL-2.0) and compatible licenses, with licensing terms specified individually for each library and userspace tool.

10 alternatives to netfilter.org (netfilter/iptables project)

Ranked by how well each tool replaces netfilter.org (netfilter/iptables project): shared features, audience, price and popularity.

  1. More Than A Firewall. Your network. Your rules. No strings attached.

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    59 out of 100 matchFree
  2. An open source, feature rich firewall and routing platform, offering cutting-edge network

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    59 out of 100 matchFree
  3. Secure networks start here.™

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    58 out of 100 matchContact sales
  4. Open source innovation. Mission critical reliability.

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    56 out of 100 matchFree
  5. Open-source network intrusion detection and prevention system for Linux and Windows.

    Covers 1 of 15 key features and has a free plan.

    Free planOpen source
    50 out of 100 match$2.50/mo
  6. Web site of Tcpdump and Libpcap

    Covers 0 of 15 key features.

    Open source
    49 out of 100 match—
  7. Open source Linux security and systems tools

    Covers 0 of 15 key features.

    Open source
    49 out of 100 match—
  8. Free and open source Internet routing protocol suite for Linux and Unix

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    48 out of 100 matchFree
  9. The Net Tools Company.

    Covers 0 of 15 key features.

    46 out of 100 matchContact sales
  10. Network traffic monitoring and cybersecurity software for real-time visibility, flow data

    Covers 0 of 15 key features and has a free plan.

    Free planOpen source
    42 out of 100 matchContact sales