python3-nftables-0.9.8-150300.3.6.1 >  A db'p9|Е!`d8Lȷi$/ž5"8ATϗAOV2` )$ 01<)+f^_An9tbd(wQOӧl;"r}ko¬ {g2<co8;vوhĩu>6r1T=xmCz`h]#Kɿ Sz)N#H)Tζb5U5+0A3p`ȠY.<(z+3d0569a806c80dc879f5e72cb23b328ff277dbce46cb386eb5b2ed054b474728f37c5cb709104c77dcf610df3f16066e16afbd41E(db'p9|aH]HKzJQجRwe2y^.r<D?)`'d<̋0F뀭0Ձnwԅ眺u\FfXqdjAtn#-@SQL4A+x{ߎ]y|_EY%̾B>(еߔ}ȝ(F{00Xb̒+U3"%>]˫3Gm88Usz˭%tp&lx,>p>(?'d & Ddhpt $D T d    4\w(89:F#G#H$I$(X$0Y$8\$`]$^%b%c&2d&e&f&l&u&v&w'Hx'hy'z'''''Cpython3-nftables0.9.8150300.3.6.1Python interface for nftablesA Python module for nftables.db'sheep67r?SUSE Linux Enterprise 15SUSE LLC GPL-2.0-onlyhttps://www.suse.com/Development/Languages/Pythonhttps://netfilter.org/projects/nftables/linuxx86_64o5m8YA큤A큤db'db'` edb'db'db'` e` e008fdafe301a4865af9a6fac1b3b3033fb1136e0f1d4ac14d309e9e6cecfa569311e5687d5aff2f97900bca92c7d768d1cb5711f31f0fb13816dba22eb3b6337bb2c15314705b408cb745e26c163ca65d5b1dacb640ae90329d9c0b90ce62738a233e3ca93b7b9620f883781844d0d227aa204570f67fa57ef2af2e13047b1e0ceaa498a540861c56992f2d709dc41f0e807ada913bfb403ce72c20d47049b49c0f3ea8eba4398c730990b1d25fd82f86316ab606fee8e6ed71151ceb278a870rootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootnftables-0.9.8-150300.3.6.1.src.rpmpython3-nftablespython3-nftables(x86-64)@    python(abi)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.63.0.4-14.6.0-14.0-15.2-14.14.3dGbo`_ ^@^ۅ@^@^@]7@]N@]Z@\C@[@ZZ@Z@Zu@Z]@YXY@WPU@U`kTmatthias.gerstner@suse.commatthias.gerstner@suse.comjengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.destefan.bruens@rwth-aachen.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.demrueckert@suse.dejengelh@inai.de- add 0001-evaluate-reject-support-ethernet-as-L2-protocol-for-.patch: this fixes a crash in nftables if layer2 reject rules are processed (e.g. Ethernet MAC address based reject rich rule in firewalld, bsc#1210773).- add 0001-cache-check-for-NULL-chain-in-cache_init.patch: this fixes rare crashes that could occur e.g. in firewalld (bsc#1197606).- Update to release 0.9.8 * Complete support for matching ICMP header content fields. * Added raw tcp option match support. * Added ability to check for the presence of any tcp option. * Support for rejecting traffic from the ingress chain.- Update to release 0.9.7 * Support for implicit chains * Support for ingress inet chains * Support for reject from prerouting chain * Support for --terse option in json * Support for the reset command with json- Update to release 0.9.6 * Fix two ASAN runtime errors- Update to release 0.9.5 * Support for set counters. * Support for restoring set element counters via nft -f. * Counter support for flowtables. * typeof concatenations support for sets. * Support for concatenated ranges in anonymous sets. * Allow to reject packets with 802.1q from the bridge family. * Support for matching on the conntrack ID. - Drop anonset-crashfix.patch (upstream solved differently)- Add anonset-crashfix.patch [boo#1171321]- Update to release 0.9.4 * Add a helper for concat expression handling. * Add "typeof" build/parse/print support.- Add json, python [boo#1158723]- Update to release 0.9.3 * meta: Introduce new conditions "time", "day" and "hour". * src: add ability to set/get secmarks to/from connection. * flowtable: add support for named flowtable listing. * flowtable: add support for delete command by handle. * json: add support for element deletion. * Add `-T` as the short option for `--numeric-time`. * meta: add ibrpvid and ibrvproto support- Update to new upstream release 0.9.2 * Transport header port matching, e.g. "th dport 53" * Support for matching on IPv4 options * Support for synproxy- Remove unused dblatex BuildRequires, only needed for the optional and disabled PDF generation (same contents as shipped manpage).- Update to new upstream release 0.9.0 * Support to check if packet matches an existing socket. * Support to limit number of active connections by arbitrary criteria, such as ip addresses, networks, conntrack zones or any combination thereof. * Added support for "audit" logging.- Update to new upstream release 0.8.5 * support to add/insert a rule at a given index position * meter statement now supports a configureable upper max size * timeouts for sets can now be specified in milliseconds * re-add iptables-like empty skeleton rulesets- Update to new upstream release 0.8.4 * Support to match IPv6 segment routing headers. * New "meta ibrname" and "meta obrname" arguments to match the name of the logical bridge a packet is passing through. These new names replace the old (misnamed) "ibriport"/"obriport". * `nft -a` will now show handle identifier for all objects, including tables and chains. * nft can now delete objects by their handle number. * Support to update maps from the ruleset (packet path). * the "--echo" option now prints handle id for tables and object too. * `nft -f -` will now read from standard input * Support for flow tables, cf. man page or https://lwn.net/Articles/738214/ .- Update to new upstream release 0.8.3 * raw payload support to match headers that do not yet have received a mnemonic.- Update to new upstream release 0.8.2 * add secpath support- Update to new upstream release 0.8.1 * This release deprecates the "flow table" syntax in favor of "meter".- Update to new upstream release 0.8 * This release contains new features available up to the (upcoming) Linux 4.14 kernel release: * Support for stateful objects, these objects are uniquely identified by a user-defined name, you can refer to them from rules, and there is a well established interface to operate with them. * Sort set elements when listing them, from lower to largest. * TCP option matching and mangling support. This includes TCP maximum segment size mangling. * Add new "-s" option for listings without stateful information. * Add new -c/--check option for nft, to tests if your ruleset loads fine, into the kernel, this is a dry run mode. * Connection tracking helper support. * Add --echo option, to print the handle that the kernel allocates to uniquely identify rules. * Conntrack zone support * Symmetric hash support * Add support to include directories from nft natives scripts, files are loaded in alphanumerical order. * Allow to check if IPv6 extension header or TCP option exists or is missing. * Extend quota support to display used bytes. * Add ct average matching, to match average bytes per packet a connection has transferred so far, to map the existing feature available in the iptables connbytes match. * Allow to flush maps and flow tables. * Allow to embed set definition into an existing set. * Conntrack event filtering support via rule.- Update to new upstream release 0.7 * Add new fib expression, which can be used to obtain the output interface from the route table based on either source or destination address of a packet. * Support hashing of any arbitrary key combination, eg. * Add number generation support. Useful for round-robin packet mark setting. * Add quota support, eg. * Introduce routing expression, for routing related data with support for nexthop * Notrack support, to explicitly skip connection tracking for matching packets. * Support to set non-byte bound packet header fields, including checksum adjustment. * Add 'create set' and 'create element' commands. * Allow to use variable reference for set element definitions. * Allow to use variable definitions from element commands. * Add support to flush set. You can use this new command to remove all existing elements in a set. * Inverted set lookups. * Honor absolute and relative paths via include file, where: * Support log flags, to enable logging TCP sequence and options. * tc classid parser support, eg. * Allow numeric connlabels, so if connlabel still works with undefined labels.- Update to new upstream release 0.6 * Rules may be replaced now * Flow table support (requires Linux >= 4.3) * Support for tracing * Ratelimiting now supports units like bytes/second. * Matchinv VLAN IDs, DSCP/ECN, ICMP RtAdv & RtSol- Update to new upstream release 0.5 * Support combinations of two or more selectors to build a tuple * Timeout support for sets * Dormant flag for tables * Default chain policy specifiable on creation- set the url to the project page - pass --disable-silent-rules to configure to allow gcc post build check to work- Update to new upstream release 0.4 * Since Linux 3.18: support for global ruleset operations * Since 3.17: full logging support for all the families, including nfnetlink_log * 3.16: automatic selection of the optimal set implementation * 3.14: reject support for ip, ip6 and inet * 3.18: reject support for bridge, and reject icmpx abstraction * 3.18: masquerade support * 3.19: redirect support * Extend meta to support pkttype, cpu and devgroup matching.sheep67 16841542460.9.8-150300.3.6.10.9.8-150300.3.6.1nftablesnftables-0.1-py3.6.egg-info__init__.py__pycache____init__.cpython-36.pycnftables.cpython-36.pycnftables.pyschema.json/usr/lib/python3.6/site-packages//usr/lib/python3.6/site-packages/nftables//usr/lib/python3.6/site-packages/nftables/__pycache__/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:28999/SUSE_SLE-15-SP3_Update/ed4025453dccbe5250bf320898c5bdb1-nftables.SUSE_SLE-15-SP3_Updatecpioxz5x86_64-suse-linuxdirectoryASCII textPython script, ASCII text executablepython 3.6 byte-compiledRRRRxWR uZ4PFutf-89c334ac530b39358228b032940a620c022b44e8cb6d804f557b40e12997c9cd2? 7zXZ !t/x+] crt:bLL ` XJrMN ǡ(:09l_k2V:p?[hF"J^~WIۿ=rBPɾP߰7mqfI kʏjY qnӌt _Ȭ*cm4ޤq~,Ԍ:Oq/PTKߍR<@!vTR!2Je1li4py|D4s~UGdyD7gRtvVbYĐgC|rf~Gg iWo/DQ鬼ެSSanC"&҈BԾekf u@1FHz3Yp: .k9[A4|k]] t;6I\#poWg tyetydٶ"i ^,R{C?YW ok0ir[g282V_bńTJ$ Lo8*䍽<7f,jZp),ɀňIWit\5bomģnwN_ՊEo"f;':.If6 v8&d靃k0WS`]#Qv@TZWCw`wVKmFJE!2478>0qBtZ,#,ɢ;h. *-{8xsYvᎣ*ڰy{cb.F%B?D[@/T 2 ii b>'R5^`E U=PÝ'8i"1rbZ>IDg#qF{%K)[7An8/r|7ǕL؝@CT+N̞ՄԝVxW[yXEֳ&hOQi=t{Tqa;&3%8\vU4/}CDAs`m R\>3XɟCH#gˀ`T8 7An + DOad+B zFᝮPEEu&7ꎢ; .ch;HpjyiePJdX84{ O(5rsDFk֧~,0r%(1%tGZ,pnw :ʺ.j[Gj*6Mdu b ^pҳo鴚߇ۋN]~S*m_G;jb«tN~CDd@bkX|8a٢d ~Wٷ37xgoo-Gg5Z*؇`!< PF>Nt1YxJС.$A;ANP%,9Y ݼgkce?x2qMMaDCg~b?rPG \R$X>+@SfqUGJ+5%zY+וD)DTק}|YIJz}k=j="i|%6 0me@ P΋0ڼزoF+a9D%}HLkKygmS Y6栻=%>b2ݘxu+K0+(-1ƟpGR{qs/?ͥhWJ.j8E<:H%Xdg6%oj n `D^F2n5K}|ʔ2Dm "8x1)?w\>5npXf,O_,|MCSe5^ۂzB,- MP,WZVG.>Ut%ׅ&˟V i_.i}kYW= T:JlEM _t{~] e9 .մB&7b]h;thߣjv~ ˜ ~&#S5ʏ#+I@[}_Dg !7yYpCiVª-8l\͠ $tW~*C` Iv&UCL`tlxO*٠GnzN⸄jp?CL$#]0y]*a;Rv)ɒRpe['7E p[56a%,CVgķs-qcFu`OLd_)Ƶj裤%~LD᧍6gC<=d!ׂ1ssnm2#F͝KU%i-l*IRyZLad%X}j`׫g04&UU5>BIA榭O  0mSAf)Wp9@{LhׅGs^C k qlzf`9a6R&ۥ>|%~DBcwF2AqDbP(rl60/vjz6@եYD$qpOKfҞ5,~6p;$]ۂCG)l.,= K_C?efAFƣ÷.UfYsG6Ӣ =_IMs>&¶<˄T1^aE M̧ﻞ,k etXO2ha)*I.m (H4᧛i6tKuuhoM\bBgAkf.hTŌ[4gUʹf*J^YOL+FhTR)ykLT)×;* QZ&sg4/5>"9]y0'L]# cp;E0:Jjњ@sgxc?LM$}MtH/8m H:. '&xLrƒt,nãJf('d9_s {b'ULϒ[run ]~̏bk:R5D|=>](Sek毱؞k>q#X6d,wY0U_ DPQv%-BuhHk^I{)qLި{pSi 'ݙՇN4fgp{2<!"c8}lsT] {m%.ϒc@<3KBK "ɗ,A%HyGb8=ȇ8e:xh42/}Ѵy䲞.'EXMR0P`x2[:/ WSӸR[tvSadI,Ү3)]XT<s[QhK40ΥoeBٕPXlctM+>tFAL lTzQsM!U6f2ˍ>{]5X(zC"[SPQBʚ8_Qc&βRHt`bE%2Eʶe޺!:LnN :l\ YdW)E,֠8sC@u}1B`7e5}7VC/ BIKP\\ آ3+3{<:TV_v{[/֗O%]t6+3?PCPN%ؒkUKoXM%9z>;yY!Bq-\}|6=I>?la1Ŀ~4,[ P S7n%-aw$(~ FC +b ˕4[Eb 9s#Y jSf0 }|'ZG^畨f9?h)/S팫"CНIQ`)wŸZ~BGyaD}fmnzyMk sZQyr3{FU L&XRG*8c`ס+d)Ϻ8*ڎⱞKJ^9L"\)߹r )7BvcmXR#Cadlї"@+~4m3ZjGaNZ4ju6dz=ن_x=ig+:ee߱8\"U&KОDp `[㠰L / WTe7Y>>b:5,VW'FK*FTfhWHX jieo! 8 ~^kH- Is|Kzj0I;?J=PI8V=0FjZ@Ǥggy<2R Z獛{E.,JMnfoǤ휸|]Oz3@I@E'K}ÈżYt3g(~2mNJYḱ;H(!S82I=6y A/Ί*Kg8t{e(2i YZ