Older kernels do not support netdev basechain without device, add it so
this works.
Alternative is to skip it by adding:
# NFT_TEST_REQUIRES(NFT_TEST_HAVE_netdev_chain_without_device)
but it seems easier to support it.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Signed-off-by: Florian Westphal <fw@strlen.de>
}
chain x {
- type filter hook ingress priority 0; policy accept;
+ type filter hook ingress device lo priority 0; policy accept;
tunnel name ip saddr map { 10.141.10.123 : "geneve-t", 10.141.10.124 : "vxlan-t", 10.141.10.125 : "erspan-tv1", 10.141.10.126 : "erspan-tv2" } counter
}
}
"table": "x",
"name": "x",
"handle": 0,
+ "dev": "lo",
"type": "filter",
"hook": "ingress",
"prio": 0,
}
chain x {
- type filter hook ingress priority filter; policy accept;
+ type filter hook ingress device "lo" priority filter; policy accept;
tunnel name ip saddr map { 10.141.10.123 : "geneve-t", 10.141.10.124 : "vxlan-t", 10.141.10.125 : "erspan-tv1", 10.141.10.126 : "erspan-tv2" } counter packets 0 bytes 0
}
}