Shorewall is a high-level firewall configuration tool for iptables and nftables, using config files for complex network setups.


sudo apt install shorewall
    

Configuration: Edit /etc/shorewall/interfaces, /etc/shorewall/zones, /etc/shorewall/policy; then start the service.


sudo shorewall check
sudo shorewall start