Having a way to get the capabilities set of the running system is something that has been needed for a long time. This is now implemented in trunk in ufw.util.get_netfilter_capabilities(). This will be used by the backend to query the caps on invocation, and then later to check the caps when setting up the limit rules.
Having a way to get the capabilities set of the running system is something that has been needed for a long time. This is now implemented in trunk in ufw.util. get_netfilter_ capabilities( ). This will be used by the backend to query the caps on invocation, and then later to check the caps when setting up the limit rules.