#!/usr/bin/env -S nft -f table ip br0_ipv4 { chain prerouting { type nat hook prerouting priority -100; iif {{ ethx }} tcp dport { 80, 443 } dnat to {{ services['rproxy'].address }}; } chain postrouting { type nat hook postrouting priority 100; iif br0 oif {{ ethx }} masquerade; } }