iif eth0 tcp dport { smtp, 587 } ct state new counter meter smtp-meter { ip saddr limit rate over 6/hour burst 3 packets } nftrace set 0 counter drop
This rule was working for a long time. One month ago it stopped working. Now it never drops any packets.