[Merge] ~alexmurray/ubuntu-seeds:promote-nftables-lp1887187 into ~ubuntu-core-dev/ubuntu-seeds/+git/platform:jammy

Dimitri John Ledkov mp+417621 at code.launchpad.net
Fri Apr 1 14:32:09 UTC 2022


Review: Needs Information

I'm not sure I quite agree with the proposed package dependencies.

deb:iptables by default provides /usr/sbin/iptables as iptables-nft, meaning it is iptables interface, but requires nft to work correctly, which needs nftables package installed to have correct default chains present.

if one doesn't need, or want to use iptables-nft compatibility UX, they can remove iptables, to instead use pure nftables.

if they don't want any nft, they need to remove both and install iptables-legacy, but we don't want to support that anymore.

it makes more sense to me to depend on nftables, and keep (iptables) as recommends. That way nftables is guaranteed to be available, and working correctly, which one can access via modern and old UX.

Allowing removal of nftables, doesn't achieve a working & supported /usr/sbin/iptables command.
-- 
https://code.launchpad.net/~alexmurray/ubuntu-seeds/+git/ubuntu-seeds/+merge/417621
Your team Ubuntu Core Development Team is subscribed to branch ~ubuntu-core-dev/ubuntu-seeds/+git/platform:jammy.




More information about the Ubuntu-reviews mailing list