[pkg-netfilter-team] Bug#944748: Bug#944748: nftables: no init script

Arturo Borrero Gonzalez arturo at debian.org
Fri Oct 20 11:02:08 BST 2023


On Fri, 20 Oct 2023 11:35:38 +0200 Magnus Holmgren <holmgren at debian.org> wrote:
> 
> Reminder that this bug isn't about building support for saving the currently 
> loaded ruleset to a file and reloading it after reboot, only about adding a 
> minimal init script that does the same job as the existing systemd unit.
> 

There wont be any sysvinit integration in this package. Sorry.

> rules and then saving the changes, but to facilitate integration of other 
> packages with nftables, I think coming up with some scheme where those 
> packages can drop configuration snippets in /etc/nftables.d, or perhaps /etc/

This should be done by other components such as firewalld.

No such functions will be added to the nftables package. The nftables package 
will just deploy the `nft` binary plus a few skeleton ruleset and other example. 
I'm already regretting the systemd integration at all.



More information about the pkg-netfilter-team mailing list