FirewallFabrik is a graphical firewall policy management tool and modern successor to Firewall Builder.
Its Qt 6 interface provides centralised policy design for multiple Linux firewalls, with support for both iptables and nftables.
Administrators create reusable objects representing hosts, networks, services and interfaces, then arrange them into firewall rules. FirewallFabrik compiles these policies into deployment-ready configurations that can be installed manually, through automation tools, or with its built-in SSH installer.
This is free and open source software.
Key Features
- Manages iptables and nftables policies from a unified Qt 6 interface.
- Maintains objects, rules and firewall definitions in a central policy database.
- Supports reusable hosts, networks, services, interfaces and object groups.
- Generates deterministic, human-readable firewall configurations.
- Stores policies in a version-control-friendly YAML format.
- Imports existing Firewall Builder XML policy files.
- Supports dual-stack IPv4 and IPv6 firewall policies.
- Provides NAT, custom chains, clustering and routing configuration.
- Detects problems such as rule shadowing during compilation.
- Includes search, search and replace, and full undo and redo history.
- Deploys policies to individual or multiple firewalls over SSH.
- Integrates with Ansible, CI/CD pipelines and other automation systems.
Website: github.com/Linuxfabrik/firewallfabrik
Support:
Developer: Linuxfabrik
License: GNU General Public License v2.0

FirewallFabrik is written in Python. Learn Python with our recommended free books and free tutorials.
Related Software
| Firewalls | |
|---|---|
| OpenSnitch | Interactive application firewall |
| nftables | Provides a new in-kernel packet classification framework |
| Firewalld | Dynamically managed firewall with support for network/firewall zones |
| Portmaster | Application firewall that does the heavy lifting |
| iptables | Configure the Linux 2.4.x and later packet filtering ruleset |
| ufw | Uncomplicated Firewall. This is software for managing a netfilter firewall |
| Shorewall | High-level tool for configuring Netfilter |
| gufw | Easy, intuitive, way to manage your Linux firewall |
| Vuurmuur | Uncomplicated Firewall, manage a netfilter firewall |
| awall | Firewall configuration tool, providing various benefits over plain iptables |
| Foomuuri | Multizone bidirectional nftables firewall |
| bgpipe | BGP reverse proxy and firewall |
Read our verdict in the software roundup.
Explore our comprehensive directory of recommended free and open source software. Our carefully curated collection spans every major software category.This directory is part of our ongoing series of informative articles for Linux enthusiasts. It features hundreds of detailed reviews, along with open source alternatives to proprietary solutions from major corporations such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk. You’ll also find interesting projects to try, hardware coverage, free programming books and tutorials, and much more. Discovered a useful open source Linux program that we haven’t covered yet? Let us know by completing this form. |


Please read our Comment Policy before commenting.