]> git.ipfire.org Git - thirdparty/iptables.git/commit
extensions: libip6t_REJECT: Add translation to nft
authorShivani Bhardwaj <shivanib134@gmail.com>
Tue, 5 Jan 2016 14:48:26 +0000 (20:18 +0530)
committerPablo Neira Ayuso <pablo@netfilter.org>
Tue, 16 Feb 2016 18:30:24 +0000 (19:30 +0100)
commit2db1d5dd8bd3f247142ead25698034a0db36fd4d
treeae5bce3acd9ce59c2d75f48fe3725752233fd47e
parent1b320a1a1dc1fdda78b81c6aaf087fffc839cc37
extensions: libip6t_REJECT: Add translation to nft

Add translation for target REJECT to nftables.

Examples:

$ sudo ip6tables-translate -A FORWARD -p TCP --dport 22 -j REJECT --reject-with icmp6-reject-route
nft add rule ip6 filter FORWARD tcp dport 22 counter reject with icmpv6 type reject-route

$ sudo ip6tables-translate -A FORWARD -p TCP --dport 22 -j REJECT --reject-with tcp-reset
nft add rule ip6 filter FORWARD tcp dport 22 counter reject with tcp reset

Signed-off-by: Shivani Bhardwaj <shivanib134@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
extensions/libip6t_REJECT.c