1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
pande@raspberrypi:~ $ sudo nft list ruleset >> /etc/nftables.conf
bash: /etc/nftables.conf: 拒絕不符權限的操作
pande@raspberrypi:~ $ sudo nft list ruleset > my_nftables_backup.nft
pande@raspberrypi:~ $ sudo geany /etc/nftables.conf
pande@raspberrypi:~ $ sudo nft flush ruleset
pande@raspberrypi:~ $ sudo nft -f /etc/nftables.conf
pande@raspberrypi:~ $ sudo nft list ruleset
table inet filter {
chain input {
type filter hook input priority filter; policy accept;
}

chain forward {
type filter hook forward priority filter; policy accept;
}
chain output {
type filter hook output priority filter; policy accept;
}
}
table ip nat {
chain prerouting {
type nat hook prerouting priority filter; policy accept;
tcp dport 80 dnat to 127.0.0.1:1104
}

chain postrouting {
type nat hook postrouting priority srcnat; policy accept;
ip saddr 127.0.0.1 tcp sport 1104 masquerade
}
}