blob: 0a6844045b15a53ad3f024e16b01760dd8e3cea8 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
|
#!/bin/bash
RULESET='
table inet test {
set test {
type ipv4_addr
elements = { 1.1.1.1, 3.3.3.3}
}
chain test {
ip saddr @test counter accept
ip daddr { 2.2.2.2, 4.4.4.4} counter accept
}
}'
set -e
$NFT -f - <<< "$RULESET"
TMP=$(mktemp)
echo "$RULESET" >> "$TMP"
$NFT "flush ruleset;include \"$TMP\""
rm -f "$TMP"
rule_handle=$($NFT -a list ruleset | awk '/saddr/{print $NF}')
$NFT delete rule inet test test handle $rule_handle
$NFT delete set inet test test
$NFT -f - <<< "$RULESET"
|