diff options
author | Liping Zhang <zlpnobody@gmail.com> | 2016-11-27 20:08:29 +0800 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2016-11-29 23:30:10 +0100 |
commit | bb50942a62b2d76810babc0b1150895d9e5ef229 (patch) | |
tree | b1589bcad8673504a5c6228cdc1cf0c50b271b71 /extensions/libxt_multiport.c | |
parent | 6de5f08a33fc4503b7199cece736979b4be91ef3 (diff) |
extensions: LOG: add log flags translation to nft
For example:
# iptables-translate -A OUTPUT -j LOG --log-uid
nft add rule ip filter OUTPUT counter log flags skuid
# iptables-translate -A OUTPUT -j LOG --log-tcp-sequence \
--log-tcp-options
nft add rule ip filter OUTPUT counter log flags tcp sequence,options
# iptables-translate -A OUTPUT -j LOG --log-level debug --log-uid
nft add rule ip filter OUTPUT counter log level debug flags skuid
# ip6tables-translate -A OUTPUT -j LOG --log-ip-options --log-macdecode
nft add rule ip6 filter OUTPUT counter log flags ip options flags ether
# ip6tables-translate -A OUTPUT -j LOG --log-ip-options --log-uid \
--log-tcp-sequence --log-tcp-options --log-macdecode
nft add rule ip6 filter OUTPUT counter log flags all
Signed-off-by: Liping Zhang <zlpnobody@gmail.com>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'extensions/libxt_multiport.c')
0 files changed, 0 insertions, 0 deletions