Re: nftables won't accept default very simple empty filter chains on Armbian/espressobin

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Daniel Lakeland <dlakelan@xxxxxxxxxxxxxxxxxx> wrote:
> On 01/10/2019 02:03 PM, Pablo Neira Ayuso wrote:
> > 
> > > Did you compile your kernel with NF_TABLES_INET=y ?
> > I would have a look at your .config to review your nf_tables
> > configuration, make sure nothing was left behind unset.
> 
> Thanks! this is illuminating. Since I am using the Armbian stock kernel I
> have no idea what it has, or what is needed. /proc/config.gz says:
> 
> 
> CONFIG_NF_TABLES=m
> CONFIG_NF_TABLES_SET=m
> # CONFIG_NF_TABLES_INET is not set

That is the reason for the error you got.

> So _INET and _NETDEV are not set, and neither OBJREF or QUOTA... is _INET
> just for "inet" type tables (ie. combined ipv4 ipv6)

yes, it is for combined ipv4 and ipv6.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux