Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | xtables-translate: Fix translation of odd netmasks | Phil Sutter | 2021-03-09 | 1 | -0/+12 |
| | | | | | | | | | Iptables supports netmasks which are not prefixes to match on (or ignore) arbitrary bits in an address. Yet nftables' prefix notation is available for real prefixes only, so translation is not as trivial - print bitmask syntax for those cases. Signed-off-by: Phil Sutter <phil@nwl.cc> | ||||
* | extensions: test protocol and interface negation | Florian Westphal | 2018-11-12 | 1 | -0/+3 |
| | | | | Signed-off-by: Florian Westphal <fw@strlen.de> | ||||
* | iptables-nft: fix bogus handling of zero saddr/daddr | Florian Westphal | 2018-11-03 | 1 | -0/+4 |
| | | | | | | | | | | | | | rule for 0.0.0.0/8 is added as 0.0.0.0/0, because we did not check mask (or negation, for that matter). Fix this and add test cases too. This also revealed an ip6tables-nft-save bug, it would print ' !-d', not '! -d'. Closes: https://bugzilla.netfilter.org/show_bug.cgi?id=1287 Signed-off-by: Florian Westphal <fw@strlen.de> | ||||
* | extensions: libxt_standard: add unit test | Pablo Neira Ayuso | 2013-10-07 | 1 | -0/+4 |
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org> |