blob: e14a8882a576fc2f7be423ad5355983d2f1e5e2d (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
|
<rule family="ip" table="filter" chain="output" handle="36" version="0">
<rule_flags>0</rule_flags>
<expr type="payload">
<dreg>1</dreg>
<offset>16</offset>
<len>4</len>
<base>network</base>
</expr>
<expr type="lookup">
<set>map2</set>
<sreg>1</sreg>
<dreg>0</dreg>
</expr>
</rule>
<!-- nft add rule ip filter output ip daddr vmap { 192.168.1.1 => accept, 192.168.1.2 => drop, } -->
|