1iptables-translate -A FORWARD -p TCP --dport 22 -j REJECT 2nft add rule ip filter FORWARD tcp dport 22 counter reject 3 4iptables-translate -A FORWARD -p TCP --dport 22 -j REJECT --reject-with icmp-net-unreachable 5nft add rule ip filter FORWARD tcp dport 22 counter reject with icmp type net-unreachable 6 7iptables-translate -A FORWARD -p TCP --dport 22 -j REJECT --reject-with tcp-reset 8nft add rule ip filter FORWARD tcp dport 22 counter reject with tcp reset 9