libnftables1-0.9.8-150300.3.6.1<>,ldb'p9|^Zis{ tA#CcY:IY=&ֶl7C#'5{,bHGPMPsPRg+VKY!ЖBmN/e=gxCkbፇ89V2E;8zt`ٹ:99,ePgIwDTP;l | !?e$?-d8ZP~$xrM "Zp˝gUUs*:nJ-ɼZq. # >@'?'d " I  CIT\ ` d l   L(/889:=>$k@$zF$G$H$I$X$Y$\$]$^%b%&c%d&Re&Wf&Zl&\u&pv&xw' x'y'z'`'p't'z'Clibnftables10.9.8150300.3.6.1nftables firewalling command interfacelibnftables is the nftables command line interface placed into a library.db'ibs-centriq-3 FXSUSE Linux Enterprise 15SUSE LLC GPL-2.0-onlyhttps://www.suse.com/System/Librarieshttps://netfilter.org/projects/nftables/linuxaarch64 FXdb'db'dd65b56e3fd5aa2a079026614365127bbd44ff8e5e485d0269760aa666f348b9libnftables.so.1.0.0rootrootrootrootnftables-0.9.8-150300.3.6.1.src.rpmlibnftables.so.1()(64bit)libnftables1libnftables1(aarch-64)@@@@@@@@@@@@@@@@    /sbin/ldconfig/sbin/ldconfigld-linux-aarch64.so.1()(64bit)ld-linux-aarch64.so.1(GLIBC_2.17)(64bit)libc.so.6()(64bit)libc.so.6(GLIBC_2.17)(64bit)libc.so.6(GLIBC_2.22)(64bit)libc.so.6(GLIBC_2.27)(64bit)libgmp.so.10()(64bit)libjansson.so.4()(64bit)libmnl.so.0()(64bit)libmnl.so.0(LIBMNL_1.0)(64bit)libnftnl.so.11()(64bit)libnftnl.so.11(LIBNFTNL_11)(64bit)libnftnl.so.11(LIBNFTNL_13)(64bit)libnftnl.so.11(LIBNFTNL_14)(64bit)libnftnl.so.11(LIBNFTNL_15)(64bit)libnftnl.so.11(LIBNFTNL_16)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-14.14.3dGbo`_ ^@^ۅ@^@^@]7@]N@]Z@\C@[@ZZ@Z@Zu@Z]@YXY@WPU@U`kTmatthias.gerstner@suse.commatthias.gerstner@suse.comjengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.destefan.bruens@rwth-aachen.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.dejengelh@inai.demrueckert@suse.dejengelh@inai.de- add 0001-evaluate-reject-support-ethernet-as-L2-protocol-for-.patch: this fixes a crash in nftables if layer2 reject rules are processed (e.g. Ethernet MAC address based reject rich rule in firewalld, bsc#1210773).- add 0001-cache-check-for-NULL-chain-in-cache_init.patch: this fixes rare crashes that could occur e.g. in firewalld (bsc#1197606).- Update to release 0.9.8 * Complete support for matching ICMP header content fields. * Added raw tcp option match support. * Added ability to check for the presence of any tcp option. * Support for rejecting traffic from the ingress chain.- Update to release 0.9.7 * Support for implicit chains * Support for ingress inet chains * Support for reject from prerouting chain * Support for --terse option in json * Support for the reset command with json- Update to release 0.9.6 * Fix two ASAN runtime errors- Update to release 0.9.5 * Support for set counters. * Support for restoring set element counters via nft -f. * Counter support for flowtables. * typeof concatenations support for sets. * Support for concatenated ranges in anonymous sets. * Allow to reject packets with 802.1q from the bridge family. * Support for matching on the conntrack ID. - Drop anonset-crashfix.patch (upstream solved differently)- Add anonset-crashfix.patch [boo#1171321]- Update to release 0.9.4 * Add a helper for concat expression handling. * Add "typeof" build/parse/print support.- Add json, python [boo#1158723]- Update to release 0.9.3 * meta: Introduce new conditions "time", "day" and "hour". * src: add ability to set/get secmarks to/from connection. * flowtable: add support for named flowtable listing. * flowtable: add support for delete command by handle. * json: add support for element deletion. * Add `-T` as the short option for `--numeric-time`. * meta: add ibrpvid and ibrvproto support- Update to new upstream release 0.9.2 * Transport header port matching, e.g. "th dport 53" * Support for matching on IPv4 options * Support for synproxy- Remove unused dblatex BuildRequires, only needed for the optional and disabled PDF generation (same contents as shipped manpage).- Update to new upstream release 0.9.0 * Support to check if packet matches an existing socket. * Support to limit number of active connections by arbitrary criteria, such as ip addresses, networks, conntrack zones or any combination thereof. * Added support for "audit" logging.- Update to new upstream release 0.8.5 * support to add/insert a rule at a given index position * meter statement now supports a configureable upper max size * timeouts for sets can now be specified in milliseconds * re-add iptables-like empty skeleton rulesets- Update to new upstream release 0.8.4 * Support to match IPv6 segment routing headers. * New "meta ibrname" and "meta obrname" arguments to match the name of the logical bridge a packet is passing through. These new names replace the old (misnamed) "ibriport"/"obriport". * `nft -a` will now show handle identifier for all objects, including tables and chains. * nft can now delete objects by their handle number. * Support to update maps from the ruleset (packet path). * the "--echo" option now prints handle id for tables and object too. * `nft -f -` will now read from standard input * Support for flow tables, cf. man page or https://lwn.net/Articles/738214/ .- Update to new upstream release 0.8.3 * raw payload support to match headers that do not yet have received a mnemonic.- Update to new upstream release 0.8.2 * add secpath support- Update to new upstream release 0.8.1 * This release deprecates the "flow table" syntax in favor of "meter".- Update to new upstream release 0.8 * This release contains new features available up to the (upcoming) Linux 4.14 kernel release: * Support for stateful objects, these objects are uniquely identified by a user-defined name, you can refer to them from rules, and there is a well established interface to operate with them. * Sort set elements when listing them, from lower to largest. * TCP option matching and mangling support. This includes TCP maximum segment size mangling. * Add new "-s" option for listings without stateful information. * Add new -c/--check option for nft, to tests if your ruleset loads fine, into the kernel, this is a dry run mode. * Connection tracking helper support. * Add --echo option, to print the handle that the kernel allocates to uniquely identify rules. * Conntrack zone support * Symmetric hash support * Add support to include directories from nft natives scripts, files are loaded in alphanumerical order. * Allow to check if IPv6 extension header or TCP option exists or is missing. * Extend quota support to display used bytes. * Add ct average matching, to match average bytes per packet a connection has transferred so far, to map the existing feature available in the iptables connbytes match. * Allow to flush maps and flow tables. * Allow to embed set definition into an existing set. * Conntrack event filtering support via rule.- Update to new upstream release 0.7 * Add new fib expression, which can be used to obtain the output interface from the route table based on either source or destination address of a packet. * Support hashing of any arbitrary key combination, eg. * Add number generation support. Useful for round-robin packet mark setting. * Add quota support, eg. * Introduce routing expression, for routing related data with support for nexthop * Notrack support, to explicitly skip connection tracking for matching packets. * Support to set non-byte bound packet header fields, including checksum adjustment. * Add 'create set' and 'create element' commands. * Allow to use variable reference for set element definitions. * Allow to use variable definitions from element commands. * Add support to flush set. You can use this new command to remove all existing elements in a set. * Inverted set lookups. * Honor absolute and relative paths via include file, where: * Support log flags, to enable logging TCP sequence and options. * tc classid parser support, eg. * Allow numeric connlabels, so if connlabel still works with undefined labels.- Update to new upstream release 0.6 * Rules may be replaced now * Flow table support (requires Linux >= 4.3) * Support for tracing * Ratelimiting now supports units like bytes/second. * Matchinv VLAN IDs, DSCP/ECN, ICMP RtAdv & RtSol- Update to new upstream release 0.5 * Support combinations of two or more selectors to build a tuple * Timeout support for sets * Dormant flag for tables * Default chain policy specifiable on creation- set the url to the project page - pass --disable-silent-rules to configure to allow gcc post build check to work- Update to new upstream release 0.4 * Since Linux 3.18: support for global ruleset operations * Since 3.17: full logging support for all the families, including nfnetlink_log * 3.16: automatic selection of the optimal set implementation * 3.14: reject support for ip, ip6 and inet * 3.18: reject support for bridge, and reject icmpx abstraction * 3.18: masquerade support * 3.19: redirect support * Extend meta to support pkttype, cpu and devgroup matching./sbin/ldconfig/sbin/ldconfigibs-centriq-3 16841542570.9.8-150300.3.6.10.9.8-150300.3.6.1libnftables.so.1libnftables.so.1.0.0/usr/lib64/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:28999/SUSE_SLE-15-SP3_Update/ed4025453dccbe5250bf320898c5bdb1-nftables.SUSE_SLE-15-SP3_Updatedrpmxz5aarch64-suse-linuxELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=1fb6eb7615c567f8df604e6cedd9ae2b398e6e97, strippedPRR RRRRRRRR R R R RRR!4>$utf-842989421240870126ef91c5320c1721ae1b0e813baaef1040ac1e844432376a4?7zXZ !t/S@E]"k%AKqx1@Q¥|p縱q2%&2k4Fڮ t MV|ɧl$U졙8u]MoGs?ɍyxZʵަrWveM6Jol^p6?Ãf<%ۘĊ'Dܔ}s5u'ޕҶթSOrV{u.|<WxɃ5>(}!x&QR@Ze@ Ѩչf@ X<"=ÑV* ۓ#4#< Xf +}`#ut0:%հ^m 7ݹQ?ocKˊ?vKM*˸ z9?9IlZ]长Si`|)@+ޱN0R,9C7i%XUL5>|X2#{@f+%!t7NJլVm{_Jxa#3;Q&*gÇE]ɐFjbzplV{{aE\eNzbPȠoF+Ek<V_MT'dWl[q;ë\"r}Ն6:5oS~K"E `ܗ+SqKz\g /Rn4υ*<Ҳ2T+v1eP52ސv2 H'-Se=dٲW\T3c% \9;O% bJn5F@3Eae 3'qjfԕ[ xZt=`v{~;v`{O"]Eĝ&uS]WᰡOfT[g|o|*d# )(]438?[:@ aGkf+~۶enNMO;B%B]LWȦҿR(1#˱c |x,pfI=@ SDS_4LA1y:Td-Q:WB7UUMbEg\h#rS*TEPr+O/S `j.!8HSB%# U@j!!,Z2ߞ}[$7M(Zu:$gK:%yFid`);޽n ֣)O.a4w]cٿ`\ˤsOau*W/o^:.#@>*: d>M*)oYj lӠkp?Pgsa_D3E zֲlၣ{Y ;%<[3H k/h뼤7gQ|X ӥnOwdut9}kK-ݞ ٚxW|Z`(zC"Iw PͭWEFjT~a}Cw` #7UKߏm4_ʊ4:VBB:> iA?I 85(*=>A_kʯСĥt 8NPz:oWǥẍJ?.w)c30` I 5yɞeoG*9IOLYcvuG\$ ÅxQIQ(pYֿ/q9\\ڊ`z('rpp~Uk*e6k^r1VǪd+UWW%5M*Kl´ʈptEb#0=uM7.>Jbn8 ShqyDٰGQODcNHM \݄G aQj|2y1 /lVH{|N)䳵8@s-JM}L7S2_x$Ou଺MpEK ^P*U>[C4]AgjV04&; \D"B:rcـ ʬ3BD^O-@Ztpܸeq6@04ڶ7+09vRH~ƒpn}]gZATG[d_ܼn9 [ʄHӖrq61cdtrWKp"q\:VqLճ jJ{SHoo qNv@`ܐZ^*:3ma֔*EaR &PkSڡFeˋ>N.A F->l_I#vg5ʇڼaPeF_`EM(L<! TIos(D:{zˑetvՌ=[[uE>12#2 Gg-7[I< ugf!aRq 衲ڳ z|>i-(vutI8Hq7*Qn 0}G4_C &;Z:Q.?|!_n Cn<9sQ' h7/꛷Ztⶨg.5iWS(H#/?#LiyTy4 /DVR(W tOue ߗH+^n$]UK2%2!DِF,+/H${k\ k]8R(HߘT{ :YqC/se5e_O"d;zC`"9l7FRuCDZzaU`:>hDV A/v3?/5GƟa:W 6 Bh:&`?q~qh!]+4C=mྤ:3+_b_04pJ-cly.m6Cp[IB́lOeÊ7m?Tf]Ֆ Y?>cn56~+43zŐ^( >_ٓZU[QvWʧdMQILmECRX} 4UM~yej [G 2ej;Qk_~ QxlJOGm{;"Ie^D~6&=00UVeU!jDpkUOⴴEyKx?_ݮW +V*NÁ _r{Np3SdS ID TFk)d\&$[Rd~[֚$kڲUSFA{d)3EQҬI Du&A$:%`p`6[2^P"EMy"*5MP1Gzf''\~pVE) >  ~.,+Д)la$@h`5` inNQ?EgXaG 0Z$n^_#ul`гl28[-_9(f?N9$CyT*p*hwb3[d@˳6ɋ\Ț@u~ٰ5p7-lz:ܠEd( ď?I%>d|Ao1E ji*L[k}P( uG{~*2GI@y"PB] (wIkP[á~գ%/ Gfh![xPyNʾs"Z?%.k~`0/:1V+VXqʷCǷ,G_@{i{yQb8FdMeI/4۰D12q~4hhue `rnPSl=tk\A+hNӊ;^Oy,tjljY?-Ci @\dր)S%E]pL5Z Ѝf7<>4G A?$\!%e=_?,N4¼V[حKJp~[JʩHZ$#)_"eg.|z{zS:B}Xj3BaZOy ^~p)xZ4^=|㉪ zP`a Er%ɑh}t߈}W>J4 Ո)晭 EIl"Z˦Ĥ#f!ш8N֐V,lS,8X`bW]Eejo=dhEqr~ohIkvR>QD-)a  *'o*x4Sػ^~]m\mo:Qu },g$dVM  5EPy.CODoF2nPD'w$3}"\:>nA.D)ePew/\X% )Eyϕ$"Āda|jp\C Nvlqkvz2%/.7tHc㞯 >UֈN5}8öw &nP?púUqdbN:;e{X@,QAAG>rR )F nxV')E QdO-Ġ`(b*8QKڅJn$TDoWR|I G!č8~.gP?Q5zQZuEH {Gُ'=%r}}^>S*מ, w}Wi8JH-je`?y: LOjvVh|-u Ժi3w*twSǕB ne衵 3ECR0 5Df)ş<?=5FTጎV,P_z1=,y[:񅤇H<̇l6|]fN>b|&>%hX7 liTހZ uE}V"$8+=7w ̎=C*HOr eb V(0D1EI_uZՍ<qEV\AeoH1`(jɮPea!PAcIeUNؐ x,le'6G4<51vqTz BMGxḵ`؃ abQ`sn R}} (A)R| <"a~/ e̵m(V֚_JQ9G K4Q6AG_PaTg2a.t'FdbFZR))./bWy(JՃL[12O!#Fx/fC ՙ 4JևQB {-'Ih E\*\^f !3}"4wI+yLM5CSF(7wq z8ɹO;حq`4>C0&!$@AG9ugO'_d:O)MyCTd4CðHMPW iOtwKټƢxy *k^~7xӓ+"p 2!Տ&U NtV9<kû笣RF,IuFصɸ,"l%Bb`@zKU{d=MuYij U/8w5oJF@5"T |Qܱbh#$[He|fôWP©cfO3T&~ÃP[R^STwpRe껂<]b2]cRNͧ)zC( ^lq8zt?2ِ`m2Sõ̭$NKdM ExZuk^~|7jb䢋˧Ȼ{7\,>oX[]ذb z=SXo#1'l K\Y;$ #|{%W:h/]O]ZC5Q"vU<׫=P D fxY]%_ 1 r';yQ4H?ˣ@7Z,[l]jU50\ƘlnT\ܞ:7P#"ii6(4#1ъy]чwߌρȹt$ bڈF,ȈÎx"2F\Wb:f_vz}8h_GL$WcgNaT!P|S,&SEmf`J}1C 2e'@ho*W-pGXr|~3x+6pmIDَHp"_]%K $o49)~!.>nt}fYXC0~1(9 P6[M*FB_a5*7w13S[U!:ɮX rbD `'%g+M[a1;.a<Q~lqHr*uW^L}M*k T<形# \7=䁔0/.&Ko%f6gNw#؉P&{|'w5YfP\& Vj+TV֟ۓfrID=#2bټwF.vn ;e"-$Qp kQ{pʹ_yK\|,y kS! dAT9x 0cNяoc1nd"p?lLΑ!bg\^?9P`#M3ڶ5 0逛k^_k> 1$1f3L eT=Mv{ XSWAٰ\VϲUɘ_TFAT eA}M!.a\pK)2%`i$ $YeyE_$ #i unB@hE\bfBh4SR;q9~|^36O.*?Hi^6>r6/k!Udp@?]xal"KD4j|ټ19S`iKo&/kKRǽ~}!P5o0BasYDD#0xدO +#3 \ SEj#tRAx[B2W(r*Yery yS5ă4R/b}xx? ْF0 .Qœ])U|aa{}Ȑ~U~]m%@uaU hrX~/[jIAӛ1.mnK~ρy,ϦW  r! }v-" [<_2b8:{8>(:[@˾AXVp" S؄|H ,x]ːVPG2bh`:8]]yP$4Ez`L  dQ4-J{x i6iR8TAZud&(EzoVSúqg|҇50Aъ(=*|;sr9ǐ yTkI*R ]e!;1t\U^JBS"H;hb} ч9glZn|,u.;bl4c@r(v7HbE%y/aF Fi%FJ'bHL$惆@țPj,d $,-+*/^ZIMhG,SJ:Qa֖Tڅ '\tQC8<[Ri&,`cUttl6n{E?;ʚ~UkmE Ida'-w>cYpڒoĻs]EVt?FhH&Ӗfgji;?kybu 졺!9 Ф7ͥ %֓^ؿp ĺw+yan_HHZNOYu^nƲ^j52*ؓ`cY3Y\L+$vHDwmQ@*ehszɲLaF<]@Lm 6mjxŢZu4 sn51aƢ{(s32Ը ]VL)o8]]91C&V4kmfY6s6fݗ3A xtb;P=\Glw:;hhL߸π}Ӟ}x qn[ V; J-;F lGG#aVC{Hnhِ Yz'S<$g%{2Z JSnjZM)X#涝<@)vH`&'l=gQi֎x5tfQZSmbdrA2Bo 0} ,w<]R`,#LjEnLv a2E:znUM܂! ZHg IN?Q<͝|zP qhk8Vᤂ8͐p\4KG]h8XFcwwj'@V"iج:'BWH@RnAjyDtG|rD ?r7k^=8pU Xx2*XVdŗ=slm]ʯ3rSǡm۪;/٦X^D;Z%Կ_N^(jQ섹(ݹ gm"ry($;b6] +7T&0ܿU0MScC_}@ [,86"K5$w)]-5w'M ܠm'Oc/Iu]4/,iz<46MnZԭ&!|DZIXd^}h4cN5]&ndNYoR_@hR4F0~zdzsAf3z[DzoScUue*+ݐ=G5 Mc!Ҷq#wuNP8r9]*%WH<=(xIӡ$cXMB=Uc/wKnH;#{ŭq+vai 5|GRd? \=*ofT11c%J,]7:5g (D?_˴e{B vyh Lkk4ձ#8?sB}*/S, bذmem!I}Y(ݖ2p.3<o2נMZVmK5ˢV!ezg 91{ ́Ns8RiJPS7hbzB{^ቒ,^ `a: 6 ^8i*4y঄mt?e,ׅs57yX߇1wg'PU6^L3I_ a&D3 ѹ? H PhA=( tu0 !sHm/6Q -YL&~u#~q[^Zn{_*(ni"0HB~RʁE(P@;W嶍;ϩfPv>QO(W)V`Q533;"'0JeW?{ %mD/l6v-\h!3Vl)J8iOȹ -`?3jci3($Ea<{a^XfI_!ʣ2dQ=DAkI 3_fު}H5uL\wPĝ9ջS7Mq%*C>@e5O>J>lWZWo!\rZgsm[tt^3 s6?7W eGG.GpEK\;?bG'Vg (W-izG~-3IzIusYT I.TQbÞsO6v)e5U=M\$+!ޒw*Vi̎TSk|c[oOsB p[Gdjٕ5]wꇓN )`Fu0U#GBNky!'/G#A 2* QN퍷f}=3\Hm5MА&% -ݸc !>pGY=d= S7E F{SC o8q#{lT؄{q߷o66ʣc+`\1̊&Ve F{3S){ƫ t޼ky3u҄^6aueY9ub3P5FքJsX=HB( Q(,2|%eU8ƒ4!z÷) Y]DE9 j԰gDBrF~ybgҡΗ%wCOm ?¤֪.!"I@[onj95IYqq!1%Te_Q4A~J ?a#ə 8Oc_j i;,R*h+P)7WMuIFEHSH]R ~ 53$ })Ko,8Nx5mRfqYj〤Ruiýw9GB3MMkvYFdJ9S#`Z/eIƼra*.^?efA3 %Tt1Fg*H#;LDd RY ӮoI|v#P9*Q\runmUah58.*K8(%[m> ⽔2W, dDRhw"97sv~u]1>gfTMۂ(DOnqw-Gyҏio8=Ll,Hڋ_!QLCEZ^V⌀ 羧Z\>$M-vw;MmB@2H# 8aQf Ɔ5 'B 2kw*͑M2Zbav])ƆΧ  YZ