Thingamajig
New member
- Joined
- Jun 6, 2025
- Messages
- 1
Hi there!
I'm new to the forum, and new(ish) to DirectAdmin, so I'm hoping this is the right place. This is the closest thread I found, at least on this forum to try and answer this question, that and a lot of other googling:
For context, I've used CSF as a sysadmin in various contexts for quite a few years. And as we know RedHat has deprecated iptables-nft (which is currently used by CSF as a translation layer between iptables and nftables) as seen here:
access.redhat.com
I understand that CSF isn't compatible with nftables natively and from what I've been able to search on their forums, it doesn't look like there's any plans to do so or make it compatible. Does DirectAdmin have any plans to replace CSF with firewalld or something else potentially? Assuming of course Way to the Web don't make any inroads to correcting the issue in the future? Or perhaps there has been news I've missed in my search where this issue is being solved?
Cheers.
I'm new to the forum, and new(ish) to DirectAdmin, so I'm hoping this is the right place. This is the closest thread I found, at least on this forum to try and answer this question, that and a lot of other googling:
Found this thread in Google, when searching the following warnings:
Its is known CentOS/AlmaLinux/CloudLinux are leaning towards firewalld, replacing iptables (CentOS 7) with firewalld (CentOS/Alma/Rocky/etc 9). But...
Warning: Deprecated Driver is detected: iptables will not be maintained in a future major release and may be disabled
Warning: Deprecated Driver is detected: ip6tables will not be maintained in a future major release and may be disabled
Warning: Deprecated Driver is detected: ipset will not be maintained in a future major release and may be disabled
Its is known CentOS/AlmaLinux/CloudLinux are leaning towards firewalld, replacing iptables (CentOS 7) with firewalld (CentOS/Alma/Rocky/etc 9). But...
For context, I've used CSF as a sysadmin in various contexts for quite a few years. And as we know RedHat has deprecated iptables-nft (which is currently used by CSF as a translation layer between iptables and nftables) as seen here:

The ipset and iptables-nft packages have been deprecated - Red Hat Customer Portal
The following warning is logged when you load the iptables, ip6tables, ipset, ebtables, arptables, or nft_compat module: Warning: - this driver is not recommended for new deployments. It continues to be supported in this RHEL release, but it is likely to be removed in the next major release...
I understand that CSF isn't compatible with nftables natively and from what I've been able to search on their forums, it doesn't look like there's any plans to do so or make it compatible. Does DirectAdmin have any plans to replace CSF with firewalld or something else potentially? Assuming of course Way to the Web don't make any inroads to correcting the issue in the future? Or perhaps there has been news I've missed in my search where this issue is being solved?
Cheers.