I am for it.
Plus conflict nft userlands with xt userlands. I think thats the most burdening part to clean up unsuspecting user installations. With bonus to make legacy frontend installation take some dedication.
That sounds like a decent meme, still wondering about the background picture...
Suse - iptables-backend-nft
This one curtains ipt conntrack from whatevertables-nft, give it a try. Other known hurt is when -m mark and -J MARK diverge to different worlds. Thats seen as nft mark and xt mark in same nft list ruleset output.
root@ext:~# cat /etc/modules.d/nft-core
nf_tables
- nft_ct
nft_hash
nft_limit
nft_log
nft_numgen
nft_quota
nft_redir
nft_reject
nft_reject_inet
nft_reject_ipv4
nft_reject_ipv6
I withdraw my objection. I finished rewriting the last kmod tonight to nftables.
4 Likes