iptables-backend-nft-1.8.7-1.1 >  A `pp9|`BHhd)M-38:rwʽF'x2r-@ƸC"##\D]mtyP8b.Nwދ+wNzx[;|0!(PNjcgi((c:|gű{9=*XFWWks $!AA+r~kʯ0>> mk], HG6KZ &@Yf#8%)՛ex53921bcb26c899c4e83675def48ba391b13c86feb1d00deae007dcc71aaeb4bb3fb566fdb1ab5dad821086d27ae82a5fa8d8a9131t`pp9|fr;ѬGw>Vwgx"׆̳BvP>Oe`K 5kP6N>07ÛxLY 27'e-4;>I*4 :#>'E::d?K*,޳M`fG"4<5"ٵd$Hq_hR@I+\}P%݇[ao<Ɋ\5^hN-GFq*f"R׾(TWX[\>pB+?+d ! mPT`d} "(2|   < T   @  0 L     ( 8 9 <:> @ B F G! H!lI!X!Y!Z"["\" ]"^#b#c$d$e$f$l$u%v%h z+++++Ciptables-backend-nft1.8.71.1Metapackage to make nft the default backend for iptables/arptables/ebtablesInstallation of this package adds higher priority alternatives (cf. update-alternatives) that makes the iptables, ip6tables, arptables and ebtables commands point to a program variant that uses the nftables kernel interface.`ps390zp3aSUSE Linux Enterprise 15SUSE LLC GPL-2.0-only AND Artistic-2.0https://www.suse.com/Productivity/Networking/Securityhttps://netfilter.org/projects/iptables/linuxs390xupdate-alternatives \ --install "/usr/sbin/iptables" iptables "/usr/sbin/xtables-nft-multi" 2 \ --slave "/usr/sbin/iptables-restore" iptables-restore "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/iptables-save" iptables-save "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/ip6tables" ip6tables "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/ip6tables-restore" ip6tables-restore "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/ip6tables-save" ip6tables-save "/usr/sbin/xtables-nft-multi" update-alternatives --install "/usr/sbin/arptables" arptables "/usr/sbin/xtables-nft-multi" 2 \ --slave "/usr/sbin/arptables-restore" arptables-restore "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/arptables-save" arptables-save "/usr/sbin/xtables-nft-multi" update-alternatives --install "/usr/sbin/ebtables" ebtables "/usr/sbin/xtables-nft-multi" 2 \ --slave "/usr/sbin/ebtables-restore" ebtables-restore "/usr/sbin/xtables-nft-multi" \ --slave "/usr/sbin/ebtables-save" ebtables-save "/usr/sbin/xtables-nft-multi"if test "$1" = 0; then update-alternatives --remove iptables "/usr/sbin/xtables-nft-multi" update-alternatives --remove arptables "/usr/sbin/xtables-nft-multi" update-alternatives --remove ebtables "/usr/sbin/xtables-nft-multi" fi# "# "`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p`p/etc/alternatives/arptables/etc/alternatives/arptables-restore/etc/alternatives/arptables-save/etc/alternatives/ebtables/etc/alternatives/ebtables-restore/etc/alternatives/ebtables-save/etc/alternatives/ip6tables/etc/alternatives/ip6tables-restore/etc/alternatives/ip6tables-save/etc/alternatives/iptables/etc/alternatives/iptables-restore/etc/alternatives/iptables-save@@@@@@@@@@@@rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootiptables-1.8.7-1.1.src.rpmiptables-backend-nftiptables-backend-nft(s390-64)iptables-nft     /bin/sh/bin/shiptablesrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)update-alternativesupdate-alternatives1.8.03.0.4-14.6.0-14.0-15.2-14.14.1`_@^א]]@]rJ@\"\9\[[ @[[s[CN@[@ZkZZu@YK@X6@Vs@VRjengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dekstreitova@suse.comkstreitova@suse.comjengelh@inai.dejengelh@inai.dekstreitova@suse.comjengelh@inai.dejengelh@inai.deastieger@suse.commchandras@suse.dejengelh@inai.dekukuk@suse.dematthias.gerstner@suse.commatthias.gerstner@suse.comjengelh@inai.dematthias.gerstner@suse.comjengelh@inai.dejengelh@inai.dejengelh@inai.de- Update to release 1.8.7 * iptables-nft: * Improved performance when matching on IP/MAC address prefixes if the prefix is byte-aligned. In ideal cases, this doubles packet processing performance. * Dump user-defined chains in lexical order. This way ruleset dumps become stable and easily comparable. * Avoid pointless table/chain creation. For instance, `iptables-nft -L` no longer creates missing base-chains.- Update to release 1.8.6 * iptables-nft had pointlessly added "bitwise" expressions to each IP address match, needlessly slowing down run-time performance (by 50% in worst cases). * iptables-nft-restore: Support basechain policy value of "-" (indicating to not change the chain's policy). * nft-translte: Fix translation of ICMP type "any" match.- Update to release 1.8.5 * IDLETIMER: Add alarm timer option * nft: CT: add translation for NOTRACK - Drop iptables-apply-mktemp-fix.patch (seemingly applied)- Update to release 1.8.4 * Fix for wrong counter format in `ebtables-nft-save -c` output. * Print typical iptables-save comments in arptables- and ebtables-save, too. * xt_owner: add --suppl-groups option * Remove support for /etc/xtables.conf * Restore support for "-4" and "-6" options in rule lines.- Add Conflicts with iptables-nft = 1.6.2 as during the update to iptables 1.8 ip6tables-restore-translate, ip6tables-translate, iptables-restore-translate and iptables-translate were moved from iptables-nft subpackage (now iptables-backend-nft) to the main package. So we need to add a conflict here otherwise we hit file conflicts error during the update.- add missing Provides/Obsoletes for the renamed package iptables-backend-nft (was iptables-nft)- Update to new upstream release 1.8.3 * ebtables: Fix rule listing with counters * ebtables-nft: Support user-defined chain policies - Remove 0001-include-extend-the-headers-conflict-workaround-to-in.patch 0001-include-fix-build-with-kernel-headers-before-4.2.patch (upstreamed)- Add 0001-include-fix-build-with-kernel-headers-before-4.2.patch, 0001-include-extend-the-headers-conflict-workaround-to-in.patch to fix build with older linux-glibc-devel. [boo#1132821]- Add iptables-1.8.2-dont_read_garbage.patch that fixes a situation where 'iptables -L' reads garbage from the struct as the kernel never filled it in the bugged case. This can lead to issues like mapping a few TiB of memory [bsc#1106751].- Update to new upstream release 1.8.2 * Fix incorrect handling of various targets and options in iptables-nft,ebtables-nft,arptables-nft.- Update to new upstream release 1.8.1 * New cgroup match revision with reduced memory footprint- note build-time dependency on libnftnl >= 1.1.1- Add missing update-alternatives dependency to Requires(post) section. If this is missing the package fails to install properly when it is used as build dependency.- Update to new upstream release 1.8.0 and snapshot 1.8.0.g75 * The ipv6 "srh" match can now match previous/next/last sid * CONNMARK target now supports bit-shifting for restore,set and save-mark. * DNAT now supports shifted portmap ranges. * iptables now comes in two backends: legacy and nft.- Use %license instead of %doc [bsc#1082318]- Fix ethertypes ownership, should be %exclude, not %ghost.- Resolve conflict with ebtables and obtain ethertypes from new netcfg minor version. FATE#320520- Update to new upstream release 1.6.2 * add support for the "srh" match * add randomize-full for the "MASQUERADE" target * add rate match mode to the "hashlimit" match- Add iptables-batch-lock.patch: Fix a locking issue of iptables-batch which can cause it to spuriously fail when other programs modify the iptables rules in parallel (bnc#1045130). This can especially affect SuSEfirewall2 during startup.- Update to new upstream release 1.6.1 * add support for hashlimit rev 2 for higher pps rates * add support for cgroup2 path matching * translation program for nft- Update to final release 1.6.0 * Only a build fix, no new significant changes.- Update to new snapshot v1.4.21-367-g9763347 [1.6.0~] * -m ah/esp/rt: restore matching "any SPI id" by default (they unexpectedly defaulted to --spi 0 rather than --spi ALL) * -m cgroup: new module * -m dst: make ! --dst-len work * -m ipcomp: new module * -m socket: add --restore-skmark option * -j CT: add support for new zone options * -j REJECT: add missing ICMPv6 codes * -j TEE: make it possible to delete rules with -D ... -j * -j SNAT/DNAT: add randomize-full support/bin/sh/bin/shiptables-nfts390zp3a 1617957401 1.8.7-1.11.8.7-1.11.8.7-1.11.8.7-1.1arptablesarptables-restorearptables-saveebtablesebtables-restoreebtables-saveip6tablesip6tables-restoreip6tables-saveiptablesiptables-restoreiptables-savearptablesarptables-restorearptables-saveebtablesebtables-restoreebtables-saveip6tablesip6tables-restoreip6tables-saveiptablesiptables-restoreiptables-save/etc/alternatives//usr/sbin/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:SLE-15-SP3:GA/standard/72499241369ed9e387d77110c1a200d9-iptablescpioxz5s390x-suse-linux cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/arptables' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/arptables-restore' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/arptables-save' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ebtables' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ebtables-restore' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ebtables-save' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ip6tables' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ip6tables-restore' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/ip6tables-save' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/iptables' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/iptables-restore' (No such file or directory)cannot open `/home/abuild/rpmbuild/BUILDROOT/iptables-1.8.7-1.1.s390x/etc/alternatives/iptables-save' (No such file or directory)d8:UEutf-8e7486087db830f5c3298a5f688fa9ed27dc28ee728cb8e072a5dcb9a28352fee?7zXZ !t/[] ctT;Fv'&̌~Rhb<tH% a Y59: j[1GR5i#]1F/bb\R}q?6zCZۑ ~)X&#ŏD%.lG9HQR(Lf8ӃIH5?N* }-Y_ la-¼߶S{XS3p[ڽ-rt1҄"Yxf{V.7FkUׁ{! YZ