On Tue, Aug 05, 2014 at 05:07:28PM +0200, Matteo Croce wrote: > 2014-08-05 15:39 GMT+02:00 Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx>: > > Could you give a try to the following patch? Thanks. > > yes it works, but the rules are appended every time, not overwritten, > is it the intended behaviour? Yes. You have to flush the table before nft -f, eg. nft flush table ip nat, before you load your ruleset again. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html