Normally I agree but with all the high level nftables exploits this year sometimes it's better to use something that's been around for a while: [oss-security] Linux kernel: CVE-2022-1015,CVE-2022-1016 in nf_tables cause privilege escalation, information leak [LWN.net]