Blame SOURCES/0002-firewall-Default-to-iptables-backend-to-preserve-behavior.patch

562755
From af25d85a43eb2aa59a80c13aa214cbc5509b6815 Mon Sep 17 00:00:00 2001
562755
From: Wen Liang <wenliang@redhat.com>
562755
Date: Wed, 16 Jun 2021 22:43:32 +0200
562755
Subject: [PATCH] firewall: Default to iptables backend to preserve behavior
562755
562755
For upsteam, the default is "nftables" (if nft is installed). On RHEL8, we will
562755
always default to "iptables" to preserve behavior.
562755
---
562755
 src/core/nm-firewall-utils.c | 9 +++------
562755
 1 file changed, 3 insertions(+), 6 deletions(-)
562755
562755
diff --git a/src/core/nm-firewall-utils.c b/src/core/nm-firewall-utils.c
762929
index 1311f5039910..3284b5ebaa4b 100644
562755
--- a/src/core/nm-firewall-utils.c
562755
+++ b/src/core/nm-firewall-utils.c
762929
@@ -743,12 +743,9 @@ nm_firewall_config_apply(NMFirewallConfig *self, gboolean shared)
562755
 static NMFirewallBackend
562755
 _firewall_backend_detect(void)
562755
 {
562755
-    if (g_file_test(NFT_PATH, G_FILE_TEST_IS_EXECUTABLE))
562755
-        return NM_FIREWALL_BACKEND_NFTABLES;
562755
-    if (g_file_test(IPTABLES_PATH, G_FILE_TEST_IS_EXECUTABLE))
562755
-        return NM_FIREWALL_BACKEND_IPTABLES;
562755
-
562755
-    return NM_FIREWALL_BACKEND_NFTABLES;
562755
+    /* For upsteam, the default is "nftables" (if nft is installed). On RHEL8, we will
562755
+     * always default to "iptables" to preserve behavior. */
562755
+    return NM_FIREWALL_BACKEND_IPTABLES;
562755
 }
562755
 
562755
 NMFirewallBackend
562755
-- 
562755
2.31.1
562755