[pkg-netfilter-team] Bug#916863: [nftables] tproxy action not parsed correctly

Michał Mirosław mirq-deboogs at rere.qmqm.pl
Wed Dec 19 16:57:21 GMT 2018


Package: nftables
Version: 0.9.0-2
Severity: normal

--- Please enter the report below this line. ---

# nft add rule inet filter divert 'ip6 daddr ::/0 meta l4proto tcp tproxy to :2000 meta mark set 1 accept'
Error: syntax error, unexpected to
add rule inet filter divert ip6 daddr ::/0 meta l4proto tcp tproxy to :2000 meta mark set 1 accept
                                                                   ^^

RedHats have the same problem: https://bugzilla.redhat.com/show_bug.cgi?id=1651813

--- System information. ---
Architecture: 
Kernel:       Linux 4.19.10mq+

Debian Release: buster/sid
  900 testing-debug   debug.mirrors.debian.org 
  900 testing         ftp.pl.debian.org 
  800 stretch-backports ftp.pl.debian.org 
  750 stable          security.debian.org 
  750 stable          ftp.pl.debian.org 
  750 proposed-updates ftp.pl.debian.org 
  700 unstable        ftp.pl.debian.org 
  600 experimental    ftp.pl.debian.org 
  500 unstable-debug  debug.mirrors.debian.org 
  500 stable-debug    debug.mirrors.debian.org 
  500 stable          repository.spotify.com 
  500 stable          dl.google.com 
  100 stretch-backports-debug debug.mirrors.debian.org 
    1 experimental-debug debug.mirrors.debian.org 

--- Package information. ---
Depends            (Version) | Installed
============================-+-============
libnftables0     (= 0.9.0-2) | 0.9.0-2
libc6               (>= 2.4) | 
libgmp10                     | 
libjansson4       (>= 2.0.1) | 
libreadline7        (>= 6.0) | 


Package's Recommends field is empty.

Package's Suggests field is empty.



More information about the pkg-netfilter-team mailing list