Hi Pablo,
Are you sure you want this feature?
iptables-nftables has been planned to provide full compat with iptables,
so it hides the nft commands.
But, little by little, the point is to move on with nft tool only, when
people will realize it brings cooler stuff.
And I am afraid that, with such patch, we are going to maintain legacy
stuff also in nft.
To me I see iptables-nftables being the only entry point for legacy
commands, and nowhere else.
Being able to list partially match/target (type and names) would be
fine. But manipulating those should be only through iptables-nftables imho.
Br,
Tomasz
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html