2017年7月9日 星期日

Cumulus SDN: Netfilter - ACLs

The chains and their uses are:
  • PREROUTING: Touches packets before they are routed
  • INPUT: Touches packets once they are determined to be destined for the local system but before they are received by the control plane software
  • FORWARD: Touches transit traffic as it moves through the box
  • OUTPUT: Touches packets that are sourced by the control plane software before they are put on the wire
  • POSTROUTING: Touches packets immediately before they are put on the wire but after the routing decision has been made

REF: https://docs.cumulusnetworks.com/m/view-rendered-page.action?abstractPageId=5866550

