Enable `CONFIG_NFT_FIB_INET` in kernel config.
CONFIG_NFT_FIB_INET
makes reverse path filtering easier in nftables, because it's not necessary to write config separately for IPv6 and IPv4.
It is already enabled on linux-rpi2 and linux-rpi4 (only on aarch64). I think maybe good to enable it on other architectures too. RPIs also come with CONFIG_NF_TABLES_NETDEV
, so maybe it could be enabled everywhere too for consistency.