On 4/3/26 10:14, David C Rankin wrote:
Felix, thank you for the heads up,

  I need legacy-only behavior. Can you tell us what the versions numbers will be for this switch so we can make sure we can install iptables-legacy and remove iptables when the change is made.

Hi David,

The switch is already visible in core-testing:
- iptables 1:1.8.11-4 is the nft backend and replaces iptables-nft
- iptables-legacy 1:1.8.11-4 is the legacy backend and provides iptables

  Also, to preserve the current iptables behavior is there anything other than installing iptables-legacy necessary?

Other than that, there should not be any extra migration step for the backend itself. The main thing to check is whether pacman leaves your saved rules as .pacsave files when switching packages. Please check:

- /etc/iptables/iptables.rules.pacsave
- /etc/iptables/ip6tables.rules.pacsave

and restore them if needed.

--
Regards,
Felix Yan

Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

Reply via email to