Hi Arturo,
Think about a 'ruleset.nft' file starting like this: ==== 8< ==== wipe ruleset
That hits the current problem: you have to wipe-out all before creating stuff: it's greedy, instead of just letting untouched/replace what exists already and adding new ones.
table ip filter {
-- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html