SaaSHub helps you find the best software and product alternatives Learn more →
Top 22 nftable Open-Source Projects
-
smartdns
A local DNS server to obtain the fastest website IP for the best Internet experience, support DoT, DoH. 一个本地DNS服务器,获取最快的网站IP,获得最佳上网体验,支持DoH,DoT。
-
InfluxDB
Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
-
nftables-geoip
Python script that generates nft maps of ip address blocks and corresponding geolocation. This data is taken from db-ip.com, so yo don't have to worry about accepting any EULA.
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
-
super
📡 SPR: Open Source, secure, user friendly and fast wifi routers for your home. One wifi password per device. Ad Blocking & Privacy Blocklists. Policy Based Network Access (by spr-networks)
-
iptables-nftables-multiroute-firewall
A collection of nftables, multi routing scripts, port knocked, and iptables files. To get inspiration to make your own firewalls.
-
geoipsets
Python package to generate country-specific IP network ranges consumable by both iptables/ipset and nftables.
-
nft-qos
QoS over Nftables (This packages is merged upstream, please visit openwrt/packages and openwrt/luci for more detail)
-
pinewall
A project to create a Linux-based home firewall/gateway/router from scratch. Based on Alpine Linux + nftables.
-
nftm
Lightweight script to manage a nftables based firewall with periodically and atomically updated whitelists and blacklists.
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
For DNS just run smartdns (https://github.com/pymumu/smartdns/blob/master/ReadMe_en.md) in your NAS, RPi or DD-WRT/OpenWRT router and enjoy.
Well, there are some, but also note it could come to change. Depending on your environnement you can find some free modules to handle this. Under Linux, on my webserver I had to introduce myself to nftables, so then I worked with nftables-geoip. This helped me blocking some countries requests for the multiple websites I handle for my company.
You can give us a try, https://github.com/spr-networks/super, http://supernetworks.org/. Wireguard is well integrated. We also have a tailscale plugin, and more vpn plugins on the way
I think ssh on a non-standard port is a no-brainer, have been doing this for years.
But at some point I got too many log entries of failed ssh access attempts. So I looked into fail2ban, but found the system too involved, and I don't like python for this kind of thing to start with. Then I started looking for alternatives, because I figured you only need something very simple, that checks certain log files and then instructs the kernel through netfilter to drop traffic from all infracting IPs. I like single-binary applications, especially for things installed outside the normal package manager. Found a skeleton of a golang app that claimed to work (it didn't), but I managed to rework it, and it serves my use cases: https://github.com/pepa65/fail2drop
nftables related posts
-
Building a freedom-friendly WiFi pocket-router (2021)
-
Secure Programmable Router
-
Raspberry Pi 4 Showcase: A Secure Programmable Router
-
Upgrade to next-level WiFi with an open-source, secure programmable router
-
SPR: Open Source, Secure Programmable Routers
-
Show HN: Supernetworks' Secure Programmable Router
-
Rootless podman with nftables on Ubuntu 22.04? Can it work?
-
A note from our sponsor - SaaSHub
www.saashub.com | 10 May 2024
Index
What are some of the best open-source nftable projects? This list will help you:
Project | Stars | |
---|---|---|
1 | smartdns | 7,776 |
2 | miniupnp | 1,388 |
3 | samila | 1,063 |
4 | linux | 861 |
5 | firewalld | 821 |
6 | hev-socks5-tproxy | 366 |
7 | nftables-geoip | 105 |
8 | super | 94 |
9 | iptables-nftables-multiroute-firewall | 84 |
10 | geoipsets | 84 |
11 | ipset-country | 68 |
12 | nft-qos | 60 |
13 | CAKE-QoS-Script-OpenWrt | 49 |
14 | cni-plugins | 42 |
15 | wgnetwork | 24 |
16 | nettrust | 21 |
17 | pinewall | 18 |
18 | collection_nftables | 6 |
19 | nftm | 4 |
20 | infra_nftables | 4 |
21 | fail2drop | 1 |
22 | addons_nftables | 1 |
Sponsored