Endpoint configuration · GraphQL enum

ChainPriority enum

ChainPriority defines the execution order of chains attached to the same hook. Chains with lower priority values (e.g., FIRST) are evaluated before those with higher values.

Values

Enum Value Description

FIRST

The earliest possible priority for a chain.

CONNTRACK_DEFRAG

Priority for connection tracking defragmentation.

RAW

Priority for raw packet processing, before connection tracking.

SELINUX_FIRST

Priority for SELinux processing, executed very early.

CONNTRACK

Priority for connection tracking.

MANGLE

Priority for packet mangling (modifying packet headers).

NAT_DEST

Priority for Destination Network Address Translation (DNAT).

FILTER

Priority for general packet filtering.

SECURITY

Priority for security-related processing.

NAT_SOURCE

Priority for Source Network Address Translation (SNAT).

SELINUX_LAST

Priority for SELinux processing, executed very late.

CONNTRACK_HELPER

Priority for connection tracking helpers (e.g., for FTP, SIP).

CONNTRACK_CONFIRM

Priority for confirming connection tracking entries.

UNSPECIFIED

Priority is not specified or unknown.

Used by

  • Chain type: Represents an nftables chain, which is a named list of rules that are executed in order.

Example

Example

"FIRST"