Re: nftables: one rule to rule them all?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Fran Fitzpatrick <francis.x.fitzpatrick@xxxxxxxxx> wrote:
> nft add rule filter input meta iif . meta l4proto . ip daddr .
> @th,16,16 vmap @test
> Error: can not use variable sized data types (integer) in concat expressions
> add rule filter input meta iif . meta l4proto . ip daddr . @th,16,16 vmap @test
>                       ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~^^^^^^^^^^^
> 
> So, is there anything currently available (or "on the way") that
> enables the functionality above? Or should I just continue with
> sets/maps per-protocol?

This example above should work with the current nft master branch.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux