MatchExpression represents an nftables expression that leverages existing kernel match modules (often from iptables/xtables compatibility). It allows for specialized packet matching logic not directly implemented as native nftables expressions.
Fields
| Field Name | Description |
|---|---|
name - String!
|
The name of the xtables match module to invoke (e.g., "addrtype", "state", "limit"). |
rev - Uint32!
|
The revision number of the xtables match module. Different revisions might have different parameter structures. |
xtablesInfo - XtablesInformation
|
The specific configuration parameters for the xtables match module, whose structure depends on the 'name' and 'rev' fields. |
Used by
ChainExpressionunion: A union of all possible nftables chain expression types.
Example
Example
{
"name": "xyz789",
"rev": "1073741824",
"xtablesInfo": XtablesInformation
}