<html>
<head>
<base href="https://bugzilla.netfilter.org/" />
</head>
<body>
<p>
<div>
<b><a class="bz_bug_link
bz_status_NEW "
title="NEW - Rules in first chain same hook ignored if second chain has policy drop"
href="https://bugzilla.netfilter.org/show_bug.cgi?id=1305#c17">Comment # 17</a>
on <a class="bz_bug_link
bz_status_NEW "
title="NEW - Rules in first chain same hook ignored if second chain has policy drop"
href="https://bugzilla.netfilter.org/show_bug.cgi?id=1305">bug 1305</a>
from <span class="vcard"><a class="email" href="mailto:pablo@netfilter.org" title="Pablo Neira Ayuso <pablo@netfilter.org>"> <span class="fn">Pablo Neira Ayuso</span></a>
</span></b>
<pre>(In reply to Frank Myhr from <a href="show_bug.cgi?id=1305#c13">comment #13</a>)
<span class="quote">> Created <span class="bz_obsolete"><a href="attachment.cgi?id=623" name="attach_623" title="netfilter / nftables packet flow diagram">attachment 623</a> <a href="attachment.cgi?id=623&action=edit" title="netfilter / nftables packet flow diagram">[details]</a></span>
> netfilter / nftables packet flow diagram
>
> My understanding of netfilter / nftables packet flow. (Tangential topic here
> I know, so feel free to send suggestions / corrections via email instead of
> this bug report.)</span >
I have just updated the wiki page, please see:
<a href="https://wiki.nftables.org/wiki-nftables/index.php/Netfilter_hooks">https://wiki.nftables.org/wiki-nftables/index.php/Netfilter_hooks</a>
<a href="https://people.netfilter.org/pablo/nf-hooks.png">https://people.netfilter.org/pablo/nf-hooks.png</a>
Let me know if you have comments on this one / find mistakes to fix this.
Routing comes before the output hook, that's why there is a 'route' chain type
for output basechains.</pre>
</div>
</p>
<hr>
<span>You are receiving this mail because:</span>
<ul>
<li>You are watching all bug changes.</li>
</ul>
</body>
</html>