From 165d18010937b5efa056332268bf148535276c90 Mon Sep 17 00:00:00 2001 From: Nicolas Fort Date: Fri, 24 Nov 2023 11:28:42 -0300 Subject: Firewall: Remove firewall documentation from current branch. 1.5 was born with new firewall structure, so no need to include this information. --- docs/configuration/firewall/index.rst | 32 +------------------------------- 1 file changed, 1 insertion(+), 31 deletions(-) (limited to 'docs/configuration/firewall/index.rst') diff --git a/docs/configuration/firewall/index.rst b/docs/configuration/firewall/index.rst index 5d094278..3887e26a 100644 --- a/docs/configuration/firewall/index.rst +++ b/docs/configuration/firewall/index.rst @@ -1,17 +1,9 @@ -:lastproofread: 2023-11-08 +:lastproofread: 2023-11-23 ######## Firewall ######## -.. attention:: - Starting from VyOS 1.4-rolling-202308040557, a new firewall structure - can be found on all vyos installations. - -*************** -Netfilter based -*************** - With VyOS being based on top of Linux and its kernel, the Netfilter project created the iptables and now the successor nftables for the Linux kernel to work directly on the data flows. This now extends the concept of zone-based @@ -155,34 +147,12 @@ configuration: ipv4 ipv6 flowtables - zone .. note:: **For more information** of Netfilter hooks and Linux networking packet flows can be found in `Netfilter-Hooks `_ -*************** -Legacy Firewall -*************** - -.. toctree:: - :maxdepth: 1 - :includehidden: - - general-legacy - -Traditionally firewalls weere configured with the concept of data going in and -out of an interface. The router just listened to the data flowing through and -responding as required if it was directed at the router itself. - -To configure VyOS with the -:doc:`legacy firewall configuration ` - -As the example image below shows, the device was configured with rules blocking -inbound or outbound traffic on each interface. - -.. figure:: /_static/images/firewall-traditional.png Zone-based firewall ^^^^^^^^^^^^^^^^^^^ -- cgit v1.2.3