diff options
author | Pablo Neira Ayuso <pablo@netfilter.org> | 2021-02-09 12:57:14 +0100 |
---|---|---|
committer | Pablo Neira Ayuso <pablo@netfilter.org> | 2021-02-09 13:48:06 +0100 |
commit | 45f5a1f9786f8908f41fc4fd62b90688ec407a18 (patch) | |
tree | 098ceb7af0f61604e1ecdb8cfe71d927ab227946 /tests | |
parent | 5b1fb140a0db0e14d036face850dad3a4e209901 (diff) |
tests: shell: extend 0025empty_dynset_0 to cover multi-statement support
Add a test to cover multi-statement support.
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
Diffstat (limited to 'tests')
-rwxr-xr-x | tests/shell/testcases/nft-f/0025empty_dynset_0 | 6 | ||||
-rw-r--r-- | tests/shell/testcases/nft-f/dumps/0025empty_dynset_0.nft | 6 |
2 files changed, 12 insertions, 0 deletions
diff --git a/tests/shell/testcases/nft-f/0025empty_dynset_0 b/tests/shell/testcases/nft-f/0025empty_dynset_0 index 796628a7..10c5cc1b 100755 --- a/tests/shell/testcases/nft-f/0025empty_dynset_0 +++ b/tests/shell/testcases/nft-f/0025empty_dynset_0 @@ -11,6 +11,12 @@ RULESET="table ip foo { type ipv6_addr . inet_service . ifname . ipv6_addr . inet_service flags dynamic } + + set inflows_ratelimit { + type ipv4_addr . inet_service . ifname . ipv4_addr . inet_service + flags dynamic + elements = { 10.1.0.3 . 39466 . \"veth1\" . 10.3.0.99 . 5201 limit rate 1/second counter packets 0 bytes 0 } + } }" $NFT -f - <<< "$RULESET" diff --git a/tests/shell/testcases/nft-f/dumps/0025empty_dynset_0.nft b/tests/shell/testcases/nft-f/dumps/0025empty_dynset_0.nft index 559eb49f..2bb35592 100644 --- a/tests/shell/testcases/nft-f/dumps/0025empty_dynset_0.nft +++ b/tests/shell/testcases/nft-f/dumps/0025empty_dynset_0.nft @@ -9,4 +9,10 @@ table ip foo { type ipv6_addr . inet_service . ifname . ipv6_addr . inet_service flags dynamic } + + set inflows_ratelimit { + type ipv4_addr . inet_service . ifname . ipv4_addr . inet_service + flags dynamic + elements = { 10.1.0.3 . 39466 . "veth1" . 10.3.0.99 . 5201 limit rate 1/second counter packets 0 bytes 0 } + } } |