>>106743921
Now with NFTable sets:
nft list table inet tor_nat
table inet tor_nat {
set tor_ipv4 {
type ipv4_addr
flags dynamic
elements = { 199.232.192.193, 199.232.196.193 }
}
set tor_ipv6 {
type ipv6_addr
flags dynamic
}
chain prerouting {
type nat hook prerouting priority dstnat; policy accept;
iifname "br-lan" ip daddr @tor_ipv4 tcp flags syn redirect to :9040
iifname "br-lan" ip6 daddr @tor_ipv6 tcp flags syn redirect to :9040
}
}
Networking is fun, and fuck you Imgur.