1iptables-translate -t nat -A OUTPUT -p tcp --dport 80 -m owner --uid-owner root -j ACCEPT 2nft 'add rule ip nat OUTPUT tcp dport 80 skuid 0 counter accept' 3 4iptables-translate -t nat -A OUTPUT -p tcp --dport 80 -m owner --gid-owner 0-10 -j ACCEPT 5nft 'add rule ip nat OUTPUT tcp dport 80 skgid 0-10 counter accept' 6 7iptables-translate -t nat -A OUTPUT -p tcp --dport 80 -m owner ! --uid-owner 1000 -j ACCEPT 8nft 'add rule ip nat OUTPUT tcp dport 80 skuid != 1000 counter accept' 9