nftables-debuginfo-0.9.8-150300.3.3.1 >  A b{_p9|`d}Y-r2<,{eAvgU-lWFQPNLz|%y%4<֑YxH\Vw Pe9W6Qo<4Vr>II57=KZ/r0MLEF Ӈ-$ղJQc9R:SĂ"`<`}WlsCd1"l4M_R6?3b3284ddd545044b28eae6181b9d90cfe0ce5ac69e479684c454d7de75ceabaac0494644cf90e413486e6a406685dc7ce0bcbe83gTb{_p9|}?uܻ{DC@^@^@r: Bs)oƣ?aQp+N!#{yQK[V:։@h:gu?_dq| s/JQs߿jH4~Qtrv\[}PjWI&5=IT EiRn9+;iv9zjl }ׁKxWec3 rBt[+"E}Ӵl٤>pA) ?)d ( O %FS i{       ,    $ L ~  @P(894:F#G#$ H#L I#t X#Y#\# ]$ ^$b%Sc%d&e&f&l&u& v&w(( x(P y(xz(|(((((() Cnftables-debuginfo0.9.8150300.3.3.1Debug information for package nftablesThis package provides debug information for package nftables. Debug information is useful when developing applications that use this package or when debugging this package.b{_psheep25SUSE Linux Enterprise 15SUSE LLC GPL-2.0-onlyhttps://www.suse.com/Development/Debughttps://netfilter.org/projects/nftables/linuxx86_64IAAAA큤AA큤b{_nb{_pb{_pb{_pb{_pb{_nb{_nb{_nb{_nb{_nd5f7213be05ec63749c6106670bca1f66808acc67edcfb7d216b77803368634e16adb5739389f11b777bbe573a16963b0270f76477faf378753f62d10adce5f5../../../../../usr/sbin/nft../../../../../usr/lib/debug/usr/sbin/nft-0.9.8-150300.3.3.1.x86_64.debugrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootnftables-0.9.8-150300.3.3.1.src.rpmdebuginfo(build-id)nftables-debuginfonftables-debuginfo(x86-64)    rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3bo`_ ^@^ۅ@^@^@]7@]N@]Z@\C@[@ZZ@Z@Zu@Z]@YXY@WPU@U`kTmatthias.gerstner@suse.comjengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.destefan.bruens@rwth-aachen.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.demrueckert@suse.dejengelh@inai.de- add 0001-cache-check-for-NULL-chain-in-cache_init.patch: this fixes rare crashes that could occur e.g. in firewalld (bsc#1197606).- Update to release 0.9.8 * Complete support for matching ICMP header content fields. * Added raw tcp option match support. * Added ability to check for the presence of any tcp option. * Support for rejecting traffic from the ingress chain.- Update to release 0.9.7 * Support for implicit chains * Support for ingress inet chains * Support for reject from prerouting chain * Support for --terse option in json * Support for the reset command with json- Update to release 0.9.6 * Fix two ASAN runtime errors- Update to release 0.9.5 * Support for set counters. * Support for restoring set element counters via nft -f. * Counter support for flowtables. * typeof concatenations support for sets. * Support for concatenated ranges in anonymous sets. * Allow to reject packets with 802.1q from the bridge family. * Support for matching on the conntrack ID. - Drop anonset-crashfix.patch (upstream solved differently)- Add anonset-crashfix.patch [boo#1171321]- Update to release 0.9.4 * Add a helper for concat expression handling. * Add "typeof" build/parse/print support.- Add json, python [boo#1158723]- Update to release 0.9.3 * meta: Introduce new conditions "time", "day" and "hour". * src: add ability to set/get secmarks to/from connection. * flowtable: add support for named flowtable listing. * flowtable: add support for delete command by handle. * json: add support for element deletion. * Add `-T` as the short option for `--numeric-time`. * meta: add ibrpvid and ibrvproto support- Update to new upstream release 0.9.2 * Transport header port matching, e.g. "th dport 53" * Support for matching on IPv4 options * Support for synproxy- Remove unused dblatex BuildRequires, only needed for the optional and disabled PDF generation (same contents as shipped manpage).- Update to new upstream release 0.9.0 * Support to check if packet matches an existing socket. * Support to limit number of active connections by arbitrary criteria, such as ip addresses, networks, conntrack zones or any combination thereof. * Added support for "audit" logging.- Update to new upstream release 0.8.5 * support to add/insert a rule at a given index position * meter statement now supports a configureable upper max size * timeouts for sets can now be specified in milliseconds * re-add iptables-like empty skeleton rulesets- Update to new upstream release 0.8.4 * Support to match IPv6 segment routing headers. * New "meta ibrname" and "meta obrname" arguments to match the name of the logical bridge a packet is passing through. These new names replace the old (misnamed) "ibriport"/"obriport". * `nft -a` will now show handle identifier for all objects, including tables and chains. * nft can now delete objects by their handle number. * Support to update maps from the ruleset (packet path). * the "--echo" option now prints handle id for tables and object too. * `nft -f -` will now read from standard input * Support for flow tables, cf. man page or https://lwn.net/Articles/738214/ .- Update to new upstream release 0.8.3 * raw payload support to match headers that do not yet have received a mnemonic.- Update to new upstream release 0.8.2 * add secpath support- Update to new upstream release 0.8.1 * This release deprecates the "flow table" syntax in favor of "meter".- Update to new upstream release 0.8 * This release contains new features available up to the (upcoming) Linux 4.14 kernel release: * Support for stateful objects, these objects are uniquely identified by a user-defined name, you can refer to them from rules, and there is a well established interface to operate with them. * Sort set elements when listing them, from lower to largest. * TCP option matching and mangling support. This includes TCP maximum segment size mangling. * Add new "-s" option for listings without stateful information. * Add new -c/--check option for nft, to tests if your ruleset loads fine, into the kernel, this is a dry run mode. * Connection tracking helper support. * Add --echo option, to print the handle that the kernel allocates to uniquely identify rules. * Conntrack zone support * Symmetric hash support * Add support to include directories from nft natives scripts, files are loaded in alphanumerical order. * Allow to check if IPv6 extension header or TCP option exists or is missing. * Extend quota support to display used bytes. * Add ct average matching, to match average bytes per packet a connection has transferred so far, to map the existing feature available in the iptables connbytes match. * Allow to flush maps and flow tables. * Allow to embed set definition into an existing set. * Conntrack event filtering support via rule.- Update to new upstream release 0.7 * Add new fib expression, which can be used to obtain the output interface from the route table based on either source or destination address of a packet. * Support hashing of any arbitrary key combination, eg. * Add number generation support. Useful for round-robin packet mark setting. * Add quota support, eg. * Introduce routing expression, for routing related data with support for nexthop * Notrack support, to explicitly skip connection tracking for matching packets. * Support to set non-byte bound packet header fields, including checksum adjustment. * Add 'create set' and 'create element' commands. * Allow to use variable reference for set element definitions. * Allow to use variable definitions from element commands. * Add support to flush set. You can use this new command to remove all existing elements in a set. * Inverted set lookups. * Honor absolute and relative paths via include file, where: * Support log flags, to enable logging TCP sequence and options. * tc classid parser support, eg. * Allow numeric connlabels, so if connlabel still works with undefined labels.- Update to new upstream release 0.6 * Rules may be replaced now * Flow table support (requires Linux >= 4.3) * Support for tracing * Ratelimiting now supports units like bytes/second. * Matchinv VLAN IDs, DSCP/ECN, ICMP RtAdv & RtSol- Update to new upstream release 0.5 * Support combinations of two or more selectors to build a tuple * Timeout support for sets * Dormant flag for tables * Default chain policy specifiable on creation- set the url to the project page - pass --disable-silent-rules to configure to allow gcc post build check to work- Update to new upstream release 0.4 * Since Linux 3.18: support for global ruleset operations * Since 3.17: full logging support for all the families, including nfnetlink_log * 3.16: automatic selection of the optimal set implementation * 3.14: reject support for ip, ip6 and inet * 3.18: reject support for bridge, and reject icmpx abstraction * 3.18: masquerade support * 3.19: redirect support * Extend meta to support pkttype, cpu and devgroup matching.sheep25 1652252528 c2e55122f1f9fb294e9d45fee5289005954a27650.9.8-150300.3.3.10.9.8-150300.3.3.1debug.build-idc2e55122f1f9fb294e9d45fee5289005954a2765e55122f1f9fb294e9d45fee5289005954a2765.debug.dwznftables-0.9.8-150300.3.3.1.x86_64usrsbinnft-0.9.8-150300.3.3.1.x86_64.debug/usr/lib//usr/lib/debug//usr/lib/debug/.build-id//usr/lib/debug/.build-id/c2//usr/lib/debug/.dwz//usr/lib/debug/usr//usr/lib/debug/usr/sbin/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:24179/SUSE_SLE-15-SP3_Update/66ac1bca1b33139dd80ec031930f1675-nftables.SUSE_SLE-15-SP3_Updatecpioxz5x86_64-suse-linuxdirectoryELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), BuildID[sha1]=c4ac53295410620ac741c41da7afd6b1044f8b9b, with debug_info, not strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter *empty*, BuildID[sha1]=c2e55122f1f9fb294e9d45fee5289005954a2765, for GNU/Linux 3.2.0, with debug_info, not strippedPwc}nftables-debugsource(x86-64)0.9.8-150300.3.3.1utf-80be11ceccb1439eb7bd8d29c5fe65f2d13ba71e163f3ccb1451a84bf9f657068?7zXZ !t/ଟ9] crt:bLL %l2zkb:TDv֝H z]P_u X6 4NϨnBشvgBҳ[Oh:bNy?Cn4tkK0$҈i3qlsl\Zln瞎(Z!TjQaeQhQF}V AlwOm7R u[4S ,PWu3z&X*$bC)Өn!l4܎REUQ9;>h5=\u׬MU&A!lL(<¥acz򔊜i1#kTSMd-(܃7W(~9"a:KduQ&*HpgvSFe/җnףԇZ~P&8n> 0{wE'D܅)5di緂a6,jO"rY tr&wIm}u|_F|wp,)y;0ؽyK]6`dСyѬ27:ߘP9 T ۑ]MۄmӄhSV&V(Awn oCi2]։ bX#(Z.qEʝY"xiF~xsBNZP_Fdj{_f[ȿѾtT.|' ıϓM:l>x*^oQ[EXyqqLZbb2me=s7^2UQÅG9SkoB3Ee<\;~A_]ؔ:t`[S0]o?OES94AOu`hx;$2ຼ0s gqW]'ήkImW&灾T@K?xp|loo=yE$ 񺹞 ifv>yQbMt:;qXl~O.\1nJFĜwx^AϡΖ oуRi{\4kz4it9jyXx&hRvv4t`xḒEMرIEhfGJy)OEj"vu<_|HoH+YՏ_*cβ8tn!StF;w.*ޅXUЂ\|o{rE0خ ` 3,CwV1aYiF'JkNĚ#"Dn2ܵ9L } ]V?m bNFO%#8nݥ(4,OZ^ۚxưt#wT神l [G>pR@T5g5dBx\@Ɋ49xweOIý ݼ ":Qch.zlN\JLOWMKK܇#pʈ˜a:!r8;x-Bߔ-t_YW#)\F4ץǜڃkTw.)k G ua2Y"mF^^<zL;"l`} K@ciIsCuI:6)@'BzTdHX9yxO܁!Nʢ'島|C٤قǑ6֎ZdL_NZ &oIM=7fOt+HLI pg(Fo` Lʝ^m | 4/X?NoY|vđXw0E cFsR3QdZ(N4S$^]!>c0ϵi'@f 1_:x84eAE#!5؇.~\Z Y|\C}ε ]1#° y363Ƿ{HL1={aYgQ$چd& e&&.Tv|q+tR]dŴAfޔ8EAZ2=_"]}&\C[\Epc΍"7 -_gA~l O7 h0PA@nn"72&:"N^pWꯀvt 3 g7leR>2 e{;Aw9؎$en)r QTvqK]H"aļ?#]VpxS,F]|Hx=2B#k!`gֳEBV4P{i\QjBiozA}Y)Q@:}Є;mԀ b)Bò`X&!8qRZTGWӕ2L_@קK$(ͯ ;Jk8nrCXC ((NFo>kLQyAeSTb2$t `|#Cd2;HkxU3zrظW@QAЅZ ΂&XO̽ߏ+3%HI@^Gk[nJJЕKJ/ʘx% 5 2Z\p? wI "B,-ans,&epV#p,!p̐HlUw"qMAQld~f(6+mʘ Ö3.W8X7- wڊ4z/Bzt֮SLTqM_ .$.{8KGydy8]Ý#N#!Kպp]&S4LF,zsӨΛ/9wk >\PhΡb7<:*$şM Y3 +f vh}_+ A N?*VnNTh\6-?zycxUud8nogc1> NNޔy٪@bl܄oH<(᠚`jLJADl@IQuba%=> 8#UEDBߩ06S^ y`"? R'ģ?֨3Ҷ"%>Bx?ZqG7DBeQ23D/â䄁fvȢV!vUpjAJW7;܏ u>[6heY*H1ȸpĭ n.hCW-fLCe%rJpŸ̱K 0SY_Ly/GD3wF2J>7Zff?5f/b}RU([hE\j%Wd9 aw(J#W]OA!NEŞc }x?d{l ykb> ([BVJRյؤ#D|fɲyOny\!"m9~E @r}T*ܿLKK"r#782eY1d,Y n8;]ۺ5*WO(X#:ӭՇrZn+g xَГoj[#?uZ lZ'R˥(N 4 gJ=}73F/.Qet9֧HK7e^LH0;G~qFŇұnc]e 9ݹyг%V|M3#w_(z|(icq3M-Ur7 ԴL1z6l,JM* -e}(TIŚYY=HK?x*}[Al(cੀZ2GUX1scFe=y)1n? cheX~">' o&s[| -E9|^v[V&?JPIߋx`2)ŕsPFeNsIZORk,OCg1DD$o?6ſ|ĵbnVKTVP1¤_+D^?ĚiK\2>ƾ}z;C~g FQ}+oU3Ii9֊R6Y4ӯ2@rvd/e-Lkڠ;<q{15 ]DxOr%ʩ}-Ym45LA&uo29o`4Nrgloq}31{bm>CX.ݍ?ʮV!xM&U5)P]F]/$v)#6[fbqmU5Z5,eG'*zxk[A㉸[L<0gc<]=0OӜ3whf;A`nuF-fD4fa!F9|K4} ~'N] &xUT`*^rP(=c0vyE':O0 Lrw8nD" w8ft Sg<0Wj_ggޘ3$Wۚ7}福 ko/[!;ИM:J} A. OO™{a?JU#6%&A5+cyLD.Dg&IlrZ)4Z̡砀aҟ;x!]Ez"JEc[bj720AwX6c; cKU#,UjkQbRĪ}nOe3eJeKl&Cnv#3GEGicѿC#МC I.'^_/+DI=Z"XO}#BL( *Ba.ߡ7ꩨ,XU"M-dz`ϾV,Mi-bDVh\^pP2ZbN˟+(k; Ҽ2C7([.jjCğJXN47qihġ:i4HAv~]Sثu @m+Im% >vB\'O,y#ԢFh& ~3!usMd*v{h>%rr.~[(PudgrM<#iuR}]FSzAljq:܆V O^IQ e-YSJ~Ah ncMG@M- 2Zq-gȕŨ?z =U.V5 %"XӇԢ8?s"w2aV %pAPVzuC֭MuQS}e>r7H96('*AG}1-X,>lG^eWXߡj E@Y.EXLX}]vNF jwU&^g+_$pQ^*;"3ݎؿ6Ldᱍq5:'Ey@y24MՏ/۝zyO)sF.[`AD,XKPf),Sh¤͙5rʾUTB$=8Ypû-15i JBwKN,8pۡ)Q \x/0fPp9K7mGb]8޸8"WVglcw՛z%.MrgJ^b")؆FFv8&zCSE*( w3PVbSXhӡ_0 ^w͕iP'~MʌU]po,3H|DJm3<Ĵ\x0^c %,qe h`>t`D5Wb $ ^j'%.2`Lf  S =2݃M3(9(Ź^ISǸ?CJ)3nčPvKTap8R?QuSd8c@6V\_>t [;>%$tu/ I)58,h}7}m/[MA㗖ty)o@!v&|Ky'-}e<1eur6]<=n i\zP%k0b^ܕ~ BK ]R@A.: ϯ0oC r6 mki?/13ߖ0D d;~K?[}߈׻4u4z݀FBZ7z>ϸ) 9 Y:o w)i}EZOOXϡ$ 5T=C/F|!wѤs *K~UN|8}<SB+8'VU':DScn1& Ե#ьB I>lMƊkQC_zo}ؤ\(smxs+AHxCVQoSG: 0F,G[leEN^Iy0d {fHZPTmE&f~qOe9,] ?2ȯK(m¡leZ3vD!=r'f_cW=v'fv^ Z'4|D|@N bkFC~"Ek+A~ ғRpj|h%0ȧĒN>|PGߛO@f\)o(5JCp`Le. Խ>hZv^ B^I rđ€<.IDns.l8H[C<%B󳣬4S%m`]]@.e%Ahd1V'^.yr \Ø v'q6aވC1UE)~N {xީrp#w2dY8_L JҴ.@7S4`$Aq i L6Ӷa.\pUȽ0p7Hun?CdvnTW#d$˴{T $mkXdMEq5%0w`~ѵ -nԲcB. %1!vB :xKxLTbgm)^x~Tl p*yOJ⮏VQ4qfH?q+Ӆ7@TftU`ս'>_q76U(pe+ME)-2Ax\v?#s,{ I"xŭ1sq L4wYD:J~Q [Eُh=/-xBbyD.gv[ QXR.b|3`x]Vype2U{la]o{!͏cl2Y,6ǛQs ~Ipps]6,wqׅJ!j<_`%BqK-+aEla4AښwukBg ;;]BKC>&g(Y/~h٬bM]-*܍X*.]ܝٗ\_@(MZ4zm'7=<.Q˝_?T͌Z[^y<3cV8C$dkc5G\ `WgêϠ]zj) 鉱Up( ;5C<e@Wws#9Ez=Š7y"XE5w)|H*.ŋ)5Q1-6T( 4gϏmS?2ږ/NUrsnisJm]f@\ 6h+*JLDŽNLOr%/Ҕ!HfVBмA.ǘjlˠ+1-dgDW{O*g x @UqF{GV@^!eWc,[9s6ҏ$c m~#GXNrs-ꂁ󄍙,OsQl?w⥳ȇkR$ &<_kF:۷O!U_\߰0?}R5F^[RdH&4tF:PiS? -w,φjs 0 4q1,:w\rOT)fXo9i(6x"tgYBE VMoX=PR=QxӺ־Km@.sZvQm}E>Ţh'aoݒ#&8nJ.Лd$h_f0l֞SG_[;V@]‘2ú"Qxy?ֹif^nOG:fZ_-LSMD gK>Zp$lP@M;gUrZl̃LhZ +c`2є<`Udk K1D=F }i:~4]PW0[A62=-(޾xxʝ31?qanj y]>V$Q4`2D F EOkn@m5Y>=P@J~k6h2!;tz|̷ ]f _ܛr҃!͚g7,InZ(`d kqz[DuhK(8£_${Ť\)Ri2̥EO~XGב]Y*shwIhg\HGȳǣ7C>;phȣ|E@Kr (1Xy-}VKRai{Ru9Mp@z3%-CC3O 4W*VcffZߝ jP:_ꐨ_G&t| M<2I>%aɎœ 傀,LP}s-B"U9 {CEP*&eL,]2%Q!;RPÕ}g _NzۄeZކF{'A.C^e!%f;WdVYXϔ!**T 776@J+ P>0t/bl\@ZH6ieS򥽮gL6c:7D #7 5d,P"T6tXg5o)oT=jA&l,HKO%oܒ6gZָ,2윪3s" YZ