Hi,
I tried to replace ip-/ebtables with nftables and failed miserably because nf_conntrack_bridge is missing in kernel-uek-5.4.17-2036.104.5.el8uek.x86_64 and below. Connection tracking for the bridge family was added to kernel 5.3.
Is there any reason that CONFIG_NF_CONNTRACK_BRIDGE is unset in the kernel config?