On Thu, Oct 29, 2015 at 10:23:44PM +0100, Martin Gröger wrote: > I'm trying to build a transparent filter with application level filtering. > First experiment with ip and output hook and queue to userspace was > successful. Then I changed to bridge filtering with forward hook. With > counter action I see that the packets match the rule, but the queue to the > usersapce doesn't work. > > Am I right, that this fuction should work? I guess you're using the 'bridge_netfilter' module? Florian told me he will come up sooner or later with native queue support for nft (ie. no bridge_netfilter required anymore). > I'm using Fedora 22 with nftables 0.4. Not related to this problem, but it's a good idea to stick to latest. Lots of fixes and updates have happened between 0.4 and 0.5. -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html