netfilter-devel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Dynamic IP set support
@ 2015-10-24 16:48 Brian Allen Vanderburg II
  0 siblings, 0 replies; only message in thread
From: Brian Allen Vanderburg II @ 2015-10-24 16:48 UTC (permalink / raw)
  To: netfilter-devel

[-- Attachment #1: Type: text/plain, Size: 440 bytes --]

I'm interested in knowing since nftables supports sets directly, if
there is any support for dynamic sets much the same way that an iptables
rule can match a packet and add information such as an address or port
to an existing ipset.  How would I do something like this in nftables:

iptables -A FWOUTPUT -m addrtype --dst-type BROADCAST -j SET --add-set
udptracking4 src,src --exist --timeout 40

Thanks,

Brian Vanderburg II


[-- Attachment #2: OpenPGP digital signature --]
[-- Type: application/pgp-signature, Size: 819 bytes --]

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2015-10-24 16:53 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2015-10-24 16:48 Dynamic IP set support Brian Allen Vanderburg II

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).