[Bug 942] New: ct: timeout, ctevents, expevents and zone is not supported in nft

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Mon May 19 14:50:43 CEST 2014


https://bugzilla.netfilter.org/show_bug.cgi?id=942

           Summary: ct: timeout, ctevents, expevents and zone is not
                    supported in nft
           Product: nftables
           Version: unspecified
          Platform: x86_64
        OS/Version: Debian GNU/Linux
            Status: NEW
          Severity: normal
          Priority: P5
         Component: nft
        AssignedTo: pablo at netfilter.org
        ReportedBy: anarey at gmail.com
   Estimated Hours: 0.0


The following command-line parameters in ct iptables-extensions are not
supported in nft yet:

--timeout name     Use timeout policy 'name' for connection
--ctevents event[,event...] Generate specified conntrack events for connection
--expevents event[,event...] Generate specified expectation events for
connection
--zone ID

The last commit in Pablo git tree of kernel is "40e6442 netfilter: x_tables:
allow to use cgroup match for LOCAL_IN nf hooks"
The last commit in libmnl repo is "090a842 examples: use mnl_socket_setsockopt"
The last commit in libnftnl repo is "57107c2 common: fix unconditional output
of event wrapping stuff"
The last commit in nftables repo is "aefa9bf expression: Fix inconsistent
output in set"

-- 
Configure bugmail: https://bugzilla.netfilter.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are watching all bug changes.



More information about the netfilter-buglog mailing list