blob: 4b9f93b9c58fdc4366837f3ebbd1c6e56d1129f4 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
|
<rule family="ip" table="filter" chain="output" handle="36">
<rule_flags>0</rule_flags>
<expr type="payload">
<dreg>1</dreg>
<offset>16</offset>
<len>4</len>
<base>network</base>
</expr>
<expr type="lookup">
<set>map2</set>
<sreg>1</sreg>
<dreg>0</dreg>
</expr>
</rule>
<!-- nft add rule ip filter output ip daddr vmap { 192.168.1.1 => accept, 192.168.1.2 => drop, } -->
|