diff options
author | Phil Sutter <phil@nwl.cc> | 2023-08-15 13:47:28 +0200 |
---|---|---|
committer | Phil Sutter <phil@nwl.cc> | 2023-09-01 13:15:03 +0200 |
commit | 35ff97e9aca8cd301ff9b9a95b0a72de1aeb700b (patch) | |
tree | 5f4b36dfccf29e4290e48b3a7dfe6bc7dab5dbf2 /iptables/arptables-nft-restore.8 | |
parent | 63e4a64e943be64a7e0486838071b981074e696d (diff) |
Revert --compat option related commits
This reverts the following commits:
b14c971db6db0 ("tests: Test compat mode")
11c464ed015b5 ("Add --compat option to *tables-nft and *-nft-restore commands")
ca709b5784c98 ("nft: Introduce and use bool nft_handle::compat")
402b9b3c07c81 ("nft: Pass nft_handle to add_{target,action}()")
This implementation of a compatibility mode implements rules using
xtables extensions if possible and thus relies upon existence of those
in kernel space. Assuming no viable replacement for the internal
mechanics of this mode will be found in foreseeable future, it will
effectively block attempts at deprecating and removing of these xtables
extensions in favor of nftables expressions and thus hinder upstream's
future plans for iptables.
Signed-off-by: Phil Sutter <phil@nwl.cc>
Diffstat (limited to 'iptables/arptables-nft-restore.8')
-rw-r--r-- | iptables/arptables-nft-restore.8 | 15 |
1 files changed, 5 insertions, 10 deletions
diff --git a/iptables/arptables-nft-restore.8 b/iptables/arptables-nft-restore.8 index 12ac9ebd..09d9082c 100644 --- a/iptables/arptables-nft-restore.8 +++ b/iptables/arptables-nft-restore.8 @@ -22,23 +22,18 @@ .SH NAME arptables-restore \- Restore ARP Tables (nft-based) .SH SYNOPSIS -.BR arptables\-restore " [" --compat ] +\fBarptables\-restore .SH DESCRIPTION +.PP .B arptables-restore is used to restore ARP Tables from data specified on STDIN or via a file as first argument. -Use I/O redirection provided by your shell to read from a file. -.P +Use I/O redirection provided by your shell to read from a file +.TP .B arptables-restore flushes (deletes) all previous contents of the respective ARP Table. -.TP -.BR -C , " --compat" -Create rules in a mostly compatible way, enabling older versions of -\fBarptables\-nft\fP to correctly parse the rules received from kernel. This -mode is only useful in very specific situations and will likely impact packet -filtering performance. - .SH AUTHOR Jesper Dangaard Brouer <brouer@redhat.com> .SH SEE ALSO \fBarptables\-save\fP(8), \fBarptables\fP(8) +.PP |