A few years ago when I was reading something about linux server security (maybe it was a book) I encountered a command or an application that prevented the netfilter (iptables) rules from being changed, even by the root. Problem is, I don't remember the name or how to find it. But I want it again as I need it now.
Does anyone have any ideas?
Edit: on *BSD is 'kern.securelevel=x'
Thank you, Matic