#!/bin/bash
RULESET='
table inet test {
set test {
type ipv4_addr
elements = { 1.1.1.1, 3.3.3.3}
}
chain test {
ip saddr @test counter accept
ip daddr { 2.2.2.2, 4.4.4.4} counter accept
}
}'
set -e
$NFT -f - <<< "$RULESET"
TMP=$(mktemp)
echo "$RULESET" >> "$TMP"
$NFT "flush ruleset;include \"$TMP\""
rm -f "$TMP"
rule_handle=$($NFT list ruleset -a | awk '/saddr/{print $NF}')
$NFT delete rule inet test test handle $rule_handle
$NFT delete set inet test test
$NFT -f - <<< "$RULESET"