Rich rules with ipsets containing subnets cause nft to segfault

Solution Verified - Updated -

Issue

Unable to create firewalld rich rules with ipsets that contain multiple subnets

Environment

RHEL8.1
firewalld: 0.7.0-5.el8
nftables: 1:0.9.0-14.el8
kernel: 4.18.0-80.11.2.el8_0.x86_6

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content