nftables 1.1.0 requires patching
Hi,
Just a heads up that nftables
upgrade to v1.1.0 requires patching to revert a "faulty" upstream commit that causes incompatibility with firewalld
(which uses nftables
as its default backend) and, by cascade, causes issues with other packages using firewalld
(if installed), such as docker
.
- Firewalld upstream issue at: https://github.com/firewalld/firewalld/issues/1366
- Arch Linux downstream issue at: https://gitlab.archlinux.org/archlinux/packaging/packages/nftables/-/issues/3
- Faulty upstream commit at: https://git.netfilter.org/nftables/commit/?id=e791dbe109b6dd891a63a4236df5dc29d7a4b863
- Reverted faulty upstream commit at: https://git.netfilter.org/nftables/commit/?id=93560d0117639c8685fc287128ab06dec9950fbd (this is the one that should be patched in v1.1.0 as it isn't yet part of any upstream release)
TL;DR: this commit should be patched in the nftables
v1.1.0 package upgrade.
I hope this helps :)