Documentation/networking/tproxy.rst | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-)
The nft command snippet for redirecting traffic isn't formatted
in a literal code block like the rest of snippets.
Fix the formatting inconsistency.
Signed-off-by: Chen Linxuan <chenlinxuan@uniontech.com>
---
v2:
- Update commit message according to suggestion from Bagas
v1: https://lore.kernel.org/all/CFD0AAF9D7040B1E+20250407031727.1615941-1-chenlinxuan@uniontech.com/
---
Documentation/networking/tproxy.rst | 4 ++--
1 file changed, 2 insertions(+), 2 deletions(-)
diff --git a/Documentation/networking/tproxy.rst b/Documentation/networking/tproxy.rst
index 7f7c1ff6f159..75e4990cc3db 100644
--- a/Documentation/networking/tproxy.rst
+++ b/Documentation/networking/tproxy.rst
@@ -69,9 +69,9 @@ add rules like this to the iptables ruleset above::
# iptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY \
--tproxy-mark 0x1/0x1 --on-port 50080
-Or the following rule to nft:
+Or the following rule to nft::
-# nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept
+ # nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept
Note that for this to work you'll have to modify the proxy to enable (SOL_IP,
IP_TRANSPARENT) for the listening socket.
--
2.48.1
On Tue, Apr 08, 2025 at 03:35:50PM +0800, Chen Linxuan wrote: > The nft command snippet for redirecting traffic isn't formatted > in a literal code block like the rest of snippets. > Fix the formatting inconsistency. Applied to nf-next, thanks
On Tue, Apr 08, 2025 at 03:35:50PM +0800, Chen Linxuan wrote: > The nft command snippet for redirecting traffic isn't formatted > in a literal code block like the rest of snippets. > Fix the formatting inconsistency. > > Signed-off-by: Chen Linxuan <chenlinxuan@uniontech.com> > --- > v2: > - Update commit message according to suggestion from Bagas > v1: https://lore.kernel.org/all/CFD0AAF9D7040B1E+20250407031727.1615941-1-chenlinxuan@uniontech.com/ > --- > Documentation/networking/tproxy.rst | 4 ++-- > 1 file changed, 2 insertions(+), 2 deletions(-) > > diff --git a/Documentation/networking/tproxy.rst b/Documentation/networking/tproxy.rst > index 7f7c1ff6f159..75e4990cc3db 100644 > --- a/Documentation/networking/tproxy.rst > +++ b/Documentation/networking/tproxy.rst > @@ -69,9 +69,9 @@ add rules like this to the iptables ruleset above:: > # iptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY \ > --tproxy-mark 0x1/0x1 --on-port 50080 > > -Or the following rule to nft: > +Or the following rule to nft:: > > -# nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept > + # nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept > > Note that for this to work you'll have to modify the proxy to enable (SOL_IP, > IP_TRANSPARENT) for the listening socket. Looks good, thanks! Reviewed-by: Bagas Sanjaya <bagasdotme@gmail.com> -- An old man doll... just what I always wanted! - Clara
© 2016 - 2025 Red Hat, Inc.