nftables

  1. Repurposing 32-bit Laptop as Linux Firewall for Cybersecurity Lab - Used nftables as the primary firewall for the lab, also responsible for Network Address Translation (NAT).
  2. Bridging Lab to the Cloud with Site-to-Site VPN - Configured strict forwarding policies to secure the WireGuard tunnel and implemented Source NAT (SNAT) for traffic routed to the AWS environment.
  3. Developing Wazuh Decoders and Rules for Lab Firewall - Engineered custom decoders to extract fields from raw nftables logs and created detection rules for spoofed IPs, port scanning, and packet floods.