From 49709e2ac6cf778e8732e9b0ca124da556ed6a91 Mon Sep 17 00:00:00 2001 From: Florian Westphal Date: Thu, 24 May 2018 17:57:34 +0200 Subject: xtables-compat: remove nft_is_ruleset_compatible Use nft_is_table_compatible instead as only helper to a 'skip' decision. Custom tables, tables that have extra base chains that iptables syntax doesn't allow or rules that have special constructs line nftables set lookups or verdict maps are not listed, but a message is provided to show that such table exists. Signed-off-by: Florian Westphal --- iptables/xtables-save.c | 7 ------- 1 file changed, 7 deletions(-) (limited to 'iptables/xtables-save.c') diff --git a/iptables/xtables-save.c b/iptables/xtables-save.c index 2305e878..be98b835 100644 --- a/iptables/xtables-save.c +++ b/iptables/xtables-save.c @@ -182,13 +182,6 @@ xtables_save_main(int family, const char *progname, int argc, char *argv[]) exit(EXIT_FAILURE); } - - ret = nft_is_ruleset_compatible(&h); - if (ret) { - printf("ERROR: You're using nft features that cannot be mapped to iptables, please keep using nft.\n"); - exit(EXIT_FAILURE); - } - if (dump) { do_output(&h, tablename, show_counters); exit(0); -- cgit v1.2.3