Yet Another Firewall
- Based on state-of-the-art APIs from Linux
nftables
- Easy-to-manage Security policies
- NAT Support
- Web UI
- Zone-based security models
make -B build
Some unit tests are finished and can be launched through make test_docker
.
An example topology test is shown below.
Servers are all running a simple PHP service. Correctness of the rules can be checked through ping
, traceroute
, curl
etc. on some machines.