Displaying 1 result from an estimated 1 matches for "main_ingress".
Did you mean:
lan_ingress
2020 Jul 16
1
[Bug 1442] New: Definitions cannot be referenced in chain type configuration
...efinitions at the top of nftables.conf
define $if_main = ens33
The definition works fine in subsequent rule configuration, but does not work
in chain type definitions.
I am attempting to introduce configuration portability for an ingress hook
chain by doing this:
table netdev filter {
chain Main_Ingress {
type filter hook ingress device $if_main priority -500; policy accept;
}
However I get "Error: syntax error, unexpected '$', expecting string or quoted
string or string with a trailing asterisk".
OS: Ubuntu 20.04 kernel 5.4.0-40-generic
nftables/focal 0.9.3-2 via...