nftables-devel-0.9.8-150300.3.3.1 >  A b{`Gp9|P9J c+WSsvC/휩r\/VP49G/|Q(mYmT~8 !i<*u{Iv(hz}7ĚSvQ G' rz̖[[owr%:܄D@(S[]YrasKBљc ĶEh.J Aip&D˝1b#!V}#4 Ļ3}HP!1J^.e…9|3ec%jWլ -]\ n`F;/I1HqT:׃ sq{ ?@Ӎ]jR¸&'jX {VPQ ~[#Y xRPfO'LV #MI+QmV)Be5ߛ0CByݑq:hM0l va=>l_w%+r:SNy!L>p>&?&d $ ^2? Uu      (Ld@(c8l9:RF"G"H"I"X"Y"\#(]#@^#b$ c$d%7e%<f%?l%Au%Tv%lw& x&$y&<z&D&T&X&^&Cnftables-devel0.9.8150300.3.3.1Development files for the nftables command line interfacelibnftables is the nftables command line interface placed into a library. This package contains the header files for the library.b{_ibs-arm-2PSUSE Linux Enterprise 15SUSE LLC GPL-2.0-onlyhttps://www.suse.com/Development/Libraries/C and C++https://netfilter.org/projects/nftables/linuxaarch64 6AA큤b{_b{_b{_b{_b{_b{_326da31e471a394fc3bcabed2678284caad2a06e0631db51aad4bbe1c66452e6193e9f84b975fa8c908af297bf45403737f6f12702ad0eacd7edc0fe92d01276585a01a0e39c1685e655bf4945b6a06f4cd9904af71612b74f9d8abe738f7062libnftables.so.1.0.0rootrootrootrootrootrootrootrootrootrootrootrootnftables-0.9.8-150300.3.3.1.src.rpmnftables-develnftables-devel(aarch-64)pkgconfig(libnftables)@    /usr/bin/pkg-configlibnftables1rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)0.9.83.0.4-14.6.0-14.0-15.2-14.14.3bo`_ ^@^ۅ@^@^@]7@]N@]Z@\C@[@ZZ@Z@Zu@Z]@YXY@WPU@U`kTmatthias.gerstner@suse.comjengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.destefan.bruens@rwth-aachen.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.demrueckert@suse.dejengelh@inai.de- add 0001-cache-check-for-NULL-chain-in-cache_init.patch: this fixes rare crashes that could occur e.g. in firewalld (bsc#1197606).- Update to release 0.9.8 * Complete support for matching ICMP header content fields. * Added raw tcp option match support. * Added ability to check for the presence of any tcp option. * Support for rejecting traffic from the ingress chain.- Update to release 0.9.7 * Support for implicit chains * Support for ingress inet chains * Support for reject from prerouting chain * Support for --terse option in json * Support for the reset command with json- Update to release 0.9.6 * Fix two ASAN runtime errors- Update to release 0.9.5 * Support for set counters. * Support for restoring set element counters via nft -f. * Counter support for flowtables. * typeof concatenations support for sets. * Support for concatenated ranges in anonymous sets. * Allow to reject packets with 802.1q from the bridge family. * Support for matching on the conntrack ID. - Drop anonset-crashfix.patch (upstream solved differently)- Add anonset-crashfix.patch [boo#1171321]- Update to release 0.9.4 * Add a helper for concat expression handling. * Add "typeof" build/parse/print support.- Add json, python [boo#1158723]- Update to release 0.9.3 * meta: Introduce new conditions "time", "day" and "hour". * src: add ability to set/get secmarks to/from connection. * flowtable: add support for named flowtable listing. * flowtable: add support for delete command by handle. * json: add support for element deletion. * Add `-T` as the short option for `--numeric-time`. * meta: add ibrpvid and ibrvproto support- Update to new upstream release 0.9.2 * Transport header port matching, e.g. "th dport 53" * Support for matching on IPv4 options * Support for synproxy- Remove unused dblatex BuildRequires, only needed for the optional and disabled PDF generation (same contents as shipped manpage).- Update to new upstream release 0.9.0 * Support to check if packet matches an existing socket. * Support to limit number of active connections by arbitrary criteria, such as ip addresses, networks, conntrack zones or any combination thereof. * Added support for "audit" logging.- Update to new upstream release 0.8.5 * support to add/insert a rule at a given index position * meter statement now supports a configureable upper max size * timeouts for sets can now be specified in milliseconds * re-add iptables-like empty skeleton rulesets- Update to new upstream release 0.8.4 * Support to match IPv6 segment routing headers. * New "meta ibrname" and "meta obrname" arguments to match the name of the logical bridge a packet is passing through. These new names replace the old (misnamed) "ibriport"/"obriport". * `nft -a` will now show handle identifier for all objects, including tables and chains. * nft can now delete objects by their handle number. * Support to update maps from the ruleset (packet path). * the "--echo" option now prints handle id for tables and object too. * `nft -f -` will now read from standard input * Support for flow tables, cf. man page or https://lwn.net/Articles/738214/ .- Update to new upstream release 0.8.3 * raw payload support to match headers that do not yet have received a mnemonic.- Update to new upstream release 0.8.2 * add secpath support- Update to new upstream release 0.8.1 * This release deprecates the "flow table" syntax in favor of "meter".- Update to new upstream release 0.8 * This release contains new features available up to the (upcoming) Linux 4.14 kernel release: * Support for stateful objects, these objects are uniquely identified by a user-defined name, you can refer to them from rules, and there is a well established interface to operate with them. * Sort set elements when listing them, from lower to largest. * TCP option matching and mangling support. This includes TCP maximum segment size mangling. * Add new "-s" option for listings without stateful information. * Add new -c/--check option for nft, to tests if your ruleset loads fine, into the kernel, this is a dry run mode. * Connection tracking helper support. * Add --echo option, to print the handle that the kernel allocates to uniquely identify rules. * Conntrack zone support * Symmetric hash support * Add support to include directories from nft natives scripts, files are loaded in alphanumerical order. * Allow to check if IPv6 extension header or TCP option exists or is missing. * Extend quota support to display used bytes. * Add ct average matching, to match average bytes per packet a connection has transferred so far, to map the existing feature available in the iptables connbytes match. * Allow to flush maps and flow tables. * Allow to embed set definition into an existing set. * Conntrack event filtering support via rule.- Update to new upstream release 0.7 * Add new fib expression, which can be used to obtain the output interface from the route table based on either source or destination address of a packet. * Support hashing of any arbitrary key combination, eg. * Add number generation support. Useful for round-robin packet mark setting. * Add quota support, eg. * Introduce routing expression, for routing related data with support for nexthop * Notrack support, to explicitly skip connection tracking for matching packets. * Support to set non-byte bound packet header fields, including checksum adjustment. * Add 'create set' and 'create element' commands. * Allow to use variable reference for set element definitions. * Allow to use variable definitions from element commands. * Add support to flush set. You can use this new command to remove all existing elements in a set. * Inverted set lookups. * Honor absolute and relative paths via include file, where: * Support log flags, to enable logging TCP sequence and options. * tc classid parser support, eg. * Allow numeric connlabels, so if connlabel still works with undefined labels.- Update to new upstream release 0.6 * Rules may be replaced now * Flow table support (requires Linux >= 4.3) * Support for tracing * Ratelimiting now supports units like bytes/second. * Matchinv VLAN IDs, DSCP/ECN, ICMP RtAdv & RtSol- Update to new upstream release 0.5 * Support combinations of two or more selectors to build a tuple * Timeout support for sets * Dormant flag for tables * Default chain policy specifiable on creation- set the url to the project page - pass --disable-silent-rules to configure to allow gcc post build check to work- Update to new upstream release 0.4 * Since Linux 3.18: support for global ruleset operations * Since 3.17: full logging support for all the families, including nfnetlink_log * 3.16: automatic selection of the optimal set implementation * 3.14: reject support for ip, ip6 and inet * 3.18: reject support for bridge, and reject icmpx abstraction * 3.18: masquerade support * 3.19: redirect support * Extend meta to support pkttype, cpu and devgroup matching.ibs-arm-2 16522526250.9.8-150300.3.3.10.9.8-150300.3.3.10.9.8nftablesnftableslibnftables.hlibnftables.solibnftables.pclibnftables.3.gz/usr/include//usr/include/nftables//usr/include/nftables/nftables//usr/lib64//usr/lib64/pkgconfig//usr/share/man/man3/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:24179/SUSE_SLE-15-SP3_Update/66ac1bca1b33139dd80ec031930f1675-nftables.SUSE_SLE-15-SP3_Updatecpioxz5aarch64-suse-linuxdirectoryC source, ASCII textpkgconfig filetroff or preprocessor input, ASCII text, with very long lines (gzip compressed data, max compression, from Unix)PR&-'[,wIutf-87c103dc3a88dd664c3adb8ec457bab0f211a50f7da9013e22c76e06b73d25860? 7zXZ !t/!K] crt:bLL %l: ֎||ݜy=vCZ6aB^\Uq1~?@tPZOyT O_c][z)ip͏2\H_ׇ҃S̙FnNA|q}"d"^7}C_FG8VN?lwyL/`vFP$O߂lnQUJ|S;])KB#D5vHJjjvD)9Z &zTgN{4O22kc^`U)ᶱЎM*VY̍dGsosc?5U1#_\c:m5`1@ "uyJ!A@dΝK@=A wdVx%.95V$̿}%tbQYWH{t1?4=}E8XqKdO1 2`H³U UPIwBf+\%~J$ԞiVvÒ2!r;.x]AMhv+2}dW?:^7c驝[R}#!{;K6D~"K<^1MYt=&Pn-u`D(}jŦwlt+Mn,QZ]e(!/9:o a{zS>̀fͅPH`\5z{9xNV x B%/fsbY80XM'fBm.P , 2}%jKN/@9B#[C  Wɖ~@9XI5\kǖOCgL Y.jOqiN[|+P[I!Ky"K`Bu۔ qN̴LIrag)A? Tk ĎYP$zR_/Wg,~1h=XdXbƴZ]xQ)RofWI̙K8c:^4U͞0iXoW+J`f)պV~MVwĨ/^ JipjR>EE%B¤*FMA.,Ulr x=mɿfIjTe07~sd^x\d<*joqD.& u5%DnbJ[A2D P˸XhG4JY/0 E HН% 1"@E<ԞмlL1\+fn%vJ^sk hRF icծq!ywhB=oW􄃨Z 7ֵ6@hĝF"4(5_ >Gr#Nm%hB麕.o>2nȇhSHJj Ұ?=ހ9 $j>G1i-;zdנ68ç>GH֙h"H-0b-ٔZ)+(OHo:Bpl*%FF,X$sDJXe3&1YX3pfm N-i@/ ފ?Ǯ*w%V::4qB4K ( >N{hƕS43 آyb9JRߪ{Lt|ՎTLy`tǹ[ԮܛvuK`(O<+ˎWt(v@W!Y֏!+IPU`&ڎ9ZnaV0hL*!P@DZK>jfr黤Jֶx+:Q|Cm6fk-Q](do@c+  J[Lz[E[Ək(W*W-#يDN/&݄˽H:ay6[<ӬEkAFmOoQ>+J<8E"Tk6Idv -0xєY;!Yz_6%9 [J*վЫ[h&ɻ~iҕԋ8F\'c8gki?ʶxDƖ6pk^_T- zMH4I.cB妻2~4QZH*ڜNZ'l.<řt(I؂D~ xd[I$>-(㮺%:Y@Ki@Wnj;QO!Vې5:s-NHD"=?τO)Cb;1þ1< ѫWFen9Fl@GY8FZF; )*HV3YĻmŽn.@[(qvn"6~LXfboOQ\}GN9Jn.@'WЈ`1 By6o9~gґ&3SšYeWmf{ y.j[$=95bȟ-:FVz-0"Ĉ>uô=WäƫR )#KkCގ+j!gkOdf(sr0*(K"}"?K5=:X~{$%u$1 PHݹV7h۲4@IXYt -#x>,cfYdLeUOzOY+ykuE| kݨU.Tqh!G)I%9a1E'׸F|N3uㅥcg&= ep\f59r~ƙ7V\3h?kN s]6АRoF?۲pJII;Yn_h~BWz5~yUCxq"˚=.)vH:4i-VOWMDЍ]a.eQwf G  W@5aro G^/ Ѽ f?%V? U?FysWA"dw7lg*ʚoLYDZݟ?%f>x6*y:*{C2!K2'85!+ 8l= %zG5~~92&3|Xy=廜,ZPq:Cu :xhK3ӄh,\FJxe#YB5 (7S?F]ƿ,׊yƘ>Nyi_is3]Nb|^:ZsE,lCg0{2_|G.?KoVV r ZI<{_-3| ̓` o7\c%ɝ= a~t7:c\iR=(ɱӹB̶ϣېʎ#i NuA׋fvĎ \ lXC5hUڇxuI+%Vs. V# K aE#)l|}NF>aU>.S:dr MRЯv!`}<:c74f![ni xpJiR( AWC iU 1 "sH]l(VW3E"h[s^Vn:gz&=_ĵ1[!}y5YhienJJxI+:fwEbvb,D(BJ/CH&u'ݩ]I,[ťUR=Nn *S}zu5Q~2LH)^5u葆}l*Bv\~)Q 6lR>p?yOզkҾş<`J[@s,Qrċ'@[{Z~ɉ\b?Gcu l~uA.h r.8+ĕox +/1]P9L+bBz\VwA@$ñb- Hx8!(Zr,*}# niGυfff&?)v31,4ل#ְ:lҐ.;Jx0>@d9'->UJF;WTRm}ŒGQpqcѻ:IE!-GG/ڮS{Uߴ_SuA@JA8aQ$Ktb2MaZ2ucGsDiV81kJݖ+=,F/rE^D~Y@DŏclenE#{;=#9 )rh%ٟ{~k&S#RT+t/#Iw[뛧#ꐪ&sCVHESV]g H4K?4כ4lBMfշW0R{֎VĪV$QC7?+Y<~M>J2Rx%!E_z"[iE:/]N⵷MСo^kڪ+ƓB[۠GS,[UOԏ0fڎ4{! _BwJ+ $3o@ۦ2yJn,g9u=Y:nݖ'T^2gH>1u7jDn1GQl[%SmsstX|@^%9,4| K/{hbY {zmẏY=K鉨;N(2֔YIo\QaJCΰ@S7b4/J0E]u@O0~` /ek%zP:΂Ш䅵8wa(Yt^'BsS1rM?qm}JX łJЦR+SzQX"z?_d('_A8aʴcY>z|A l7E*k:g☹C|"&obgV3 &g֪ 0H̗EqXE8y򕚪 ѳ,$ u9~ˌ˞&?s3L bBtLiBpA7\-|@ILr٫]4h]=Ϥ&ST΢o;J# ƣ&LSCU]RGAa*J.Bc YZ