diff --git a/config/action.d/nftables.conf b/config/action.d/nftables.conf index b2bb9ec1..eeb98a5d 100644 --- a/config/action.d/nftables.conf +++ b/config/action.d/nftables.conf @@ -55,7 +55,7 @@ _nft_for_proto-multiport-done = done _nft_list = -a list chain _nft_get_handle_id = grep -oP '@\s+.*\s+\Khandle\s+(\d+)$' -_nft_add_set = add set
\{ type \; flags interval\; \} +_nft_add_set = add set
\{ type \; \} <_nft_for_proto--iter> add rule
%(rule_stat)s <_nft_for_proto--done> @@ -197,6 +197,11 @@ addr_set = addr-set- # Values: [ ip | ip6 ] addr_family = ip +# Option: addr_options +# Notes: Additional options for the addr-set, by default allows to store CIDR or address ranges. +# Can be set to empty value to create simple addresses set. +addr_options = flags interval\; + [Init?family=inet6] addr_family = ip6 addr_type = ipv6_addr