diff options
author | Florian Westphal <fw@strlen.de> | 2018-04-18 00:09:05 +0200 |
---|---|---|
committer | Florian Westphal <fw@strlen.de> | 2018-04-19 10:18:18 +0200 |
commit | f38ed1e59f8d3b62e322563401cabc6dbac5fca5 (patch) | |
tree | cfeca465d8c624b0c2361e10703796d5e4967138 /extensions/libip6t_SNAT.txlate | |
parent | 71a6e372f82b6c50c14c8034a974f3ad5983314d (diff) |
xt-translate: quote interface names in translated output
it its good practice as interface names can be virtually any
identifier and could clash with nft keywords.
Signed-off-by: Florian Westphal <fw@strlen.de>
Diffstat (limited to 'extensions/libip6t_SNAT.txlate')
-rw-r--r-- | extensions/libip6t_SNAT.txlate | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/extensions/libip6t_SNAT.txlate b/extensions/libip6t_SNAT.txlate index 9793f8d5..44f2fcea 100644 --- a/extensions/libip6t_SNAT.txlate +++ b/extensions/libip6t_SNAT.txlate @@ -1,11 +1,11 @@ ip6tables-translate -t nat -A postrouting -o eth0 -p tcp -j SNAT --to [fec0::1234]:80 -nft add rule ip6 nat postrouting oifname eth0 meta l4proto tcp counter snat to [fec0::1234]:80 +nft add rule ip6 nat postrouting oifname "eth0" meta l4proto tcp counter snat to [fec0::1234]:80 ip6tables-translate -t nat -A postrouting -o eth0 -p tcp -j SNAT --to [fec0::1234]:1-20 -nft add rule ip6 nat postrouting oifname eth0 meta l4proto tcp counter snat to [fec0::1234]:1-20 +nft add rule ip6 nat postrouting oifname "eth0" meta l4proto tcp counter snat to [fec0::1234]:1-20 ip6tables-translate -t nat -A postrouting -o eth0 -p tcp -j SNAT --to [fec0::1234]:123 --random -nft add rule ip6 nat postrouting oifname eth0 meta l4proto tcp counter snat to [fec0::1234]:123 random +nft add rule ip6 nat postrouting oifname "eth0" meta l4proto tcp counter snat to [fec0::1234]:123 random ip6tables-translate -t nat -A postrouting -o eth0 -p tcp -j SNAT --to [fec0::1234]:123 --random-fully --persistent -nft add rule ip6 nat postrouting oifname eth0 meta l4proto tcp counter snat to [fec0::1234]:123 fully-random,persistent +nft add rule ip6 nat postrouting oifname "eth0" meta l4proto tcp counter snat to [fec0::1234]:123 fully-random,persistent |