On 14 June 2017 at 11:24, Florian Westphal <fw@xxxxxxxxx> wrote: > > Another side effect is that this avoids the need to add (in nft case) > the 'empty' nat base chains to take care of reply translation. > good! > Thoughts? > I'm curious, What is the use case of using both nftables and iptables at the same time? Some missing functionality in nft? Perhaps some ipt->nft partial migration procedure? > > This would also possibly allow us to add nat hooks in the INET family. good! -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html