Re: [PATCH nft 4/4] Revert "datatype: do not assert when value exceeds expected width"

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Wed, Jan 10, 2024 at 11:57:38PM +0100, Florian Westphal wrote:
> Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote:
> >  # nft -f ruleset.nft
> >  ruleset.nft:3:28-35: Error: expression is not a concatenation
> >                 ip protocol . th dport { tcp / 22,  }
> >                                          ^^^^^^^^
> > 
> > Therefore, a852022d719e ("datatype: do not assert when value exceeds
> > expected width") not needed anymore after two previous fixes.
> 
> We can't rely on the expression soup coming from nftables.

I can keep this patch then, no problem.

Or you mean this series is botched? Please elaborate :)




[Index of Archives]     [Netfitler Users]     [Berkeley Packet Filter]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux