On Wed, Nov 23, 2016 at 07:34:42PM -0500, Peter Colberg wrote: > Assuming 4.9 becomes the stretch kernel, could you backport the patch?
The same applies to kernel support for the "fib" expression that may be used for reverse path filtering (analogous to iptables rp_filter). https://git.kernel.org/cgit/linux/kernel/git/pablo/nf-next.git/commit?id=f6d0cbcf09c506b9b022df8f9d7693a7cec3c732 That patch is more extensive and there are many more commits needed to sync nftables kernel support with userspace. Backporting does not make much sense. I am crossing fingers for 4.10 making it into stretch. Peter