On Wed, Jan 10, 2024 at 11:57:38PM +0100, Florian Westphal wrote: > Pablo Neira Ayuso <pablo@xxxxxxxxxxxxx> wrote: > > # nft -f ruleset.nft > > ruleset.nft:3:28-35: Error: expression is not a concatenation > > ip protocol . th dport { tcp / 22, } > > ^^^^^^^^ > > > > Therefore, a852022d719e ("datatype: do not assert when value exceeds > > expected width") not needed anymore after two previous fixes. > > We can't rely on the expression soup coming from nftables. I can keep this patch then, no problem. Or you mean this series is botched? Please elaborate :)