The filter
table is for normal packets:
INPUT - chain for incoming packets
OUTPUT - chain for outgoing packets
FORWARD - chain for packets that pass through
The nat
table is for packets that open new connections:
PREROUTING
OUTPUT
POSTROUTING
The mangle
table is for packets that need special modifications:
PREROUTING
INPUT
OUTPUT
FORWARD
POSTROUTING