hosts.deny, fail2ban etc.

Wed Jul 28 20:57:13 UTC 2021
Scott Techlist <techlist06 at msxc.com>

>> For what it’s worth, if you use the fail2ban-firewalld package, it uses ipset rather than iptables, which is more efficient.
>That’s in CentOS 7 though. 

>CentOS 8 firewalld uses nft instead of the older netfilter (iptables/ipset) code.

Is that an improvement?  I'm still running Centos7 so I'm not familiar with it.