There is precedent for highly technical articles targeted at an individual program (see Bash), so I think there is value in showing command syntax, etc. But I also think that this article should be merged with Netfilter.

the netfiler do not contain the info i found here. The merge for me is not ok. puting everything in one big article is IMo against wiki idea.

The example which tries to connect to port 80 using telnet is wrong. 'Connection refused' implies only that no service is running on port 80. If it were firewalled, telnet would return with 'No route to host'.

Unless someone can counter that some version of telnet behaves in the way specified, I'll change this soon.

-j REJECT --reject-with tcp-reset will cause a "Connection refused".

This is a translation from de:Diskussion:Netfilter/iptables#Frontend_und_Alternativen_ueberfluessig for reference.

Netfilter -- the tables, chains and other bits that make up the firewall and are contained in the kernel.

iptables -- the command-line, user-space tool used to interact, examine and configure the Netfilter firewall.

Even the introductory paragraph gets this part wrong. — Preceding unsigned comment added by (talk) 21:40, 26 August 2013 (UTC)