On 30. januára 2025 19:35:28 UTC, Binarus <lists@xxxxxxxxxx> wrote: >Please consider the ruleset that's at the end of this post. It doesn't make any sense, but it lets everybody reproduce the problem easily. IMO, try to set in prerouting hook: nftrace set 1 And then try to connect to SSH and post output of: nft monitor trace While i don't know how netdev table steps in play, we then will not need to guess... -- Slavko https://www.slavino.sk/