The issues with nft-based iptables/ebtables were fixed years ago, so switching back to them shouldn't have problems.
Ethan Zuo (2):
Revert "pve-firewall.service: update-alternative ip-/eb- tables to
legacy versions"
d/postinst: reset iptables/ebtables alternatives to auto
debian/postinst | 4 ++++
debian/pve-firewall.service | 3 ---
2 files changed, 4 insertions(+), 3 deletions(-)
--
2.51.0
