iptables is the userspace command line program used to configure the Linux 2.4.x and 2.6.x IPv4 packet filtering ruleset provided by netfilter.org. The iptables package also includes ip6tables, which is used for configuring the IPv6 packet filter. Since Network Address Translation is also configured from the packet filter ruleset, iptables is also used for NAT.


netfilter is not deprecated, netfilter is/are the hooks in the kernel that are needed
for iptables to work (REF: www.netfilter.org ). The netfilter page says they're
part of a single framework.

