On Tue, Apr 08, 2025 at 03:35:50PM +0800, Chen Linxuan wrote: > The nft command snippet for redirecting traffic isn't formatted > in a literal code block like the rest of snippets. > Fix the formatting inconsistency. > > Signed-off-by: Chen Linxuan <chenlinxuan@xxxxxxxxxxxxx> > --- > v2: > - Update commit message according to suggestion from Bagas > v1: https://lore.kernel.org/all/CFD0AAF9D7040B1E+20250407031727.1615941-1-chenlinxuan@xxxxxxxxxxxxx/ > --- > Documentation/networking/tproxy.rst | 4 ++-- > 1 file changed, 2 insertions(+), 2 deletions(-) > > diff --git a/Documentation/networking/tproxy.rst b/Documentation/networking/tproxy.rst > index 7f7c1ff6f159..75e4990cc3db 100644 > --- a/Documentation/networking/tproxy.rst > +++ b/Documentation/networking/tproxy.rst > @@ -69,9 +69,9 @@ add rules like this to the iptables ruleset above:: > # iptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY \ > --tproxy-mark 0x1/0x1 --on-port 50080 > > -Or the following rule to nft: > +Or the following rule to nft:: > > -# nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept > + # nft add rule filter divert tcp dport 80 tproxy to :50080 meta mark set 1 accept > > Note that for this to work you'll have to modify the proxy to enable (SOL_IP, > IP_TRANSPARENT) for the listening socket. Looks good, thanks! Reviewed-by: Bagas Sanjaya <bagasdotme@xxxxxxxxx> -- An old man doll... just what I always wanted! - Clara
Attachment:
signature.asc
Description: PGP signature