Policy requires table argument (but default should be filter)
diff --git a/iptables/service.sls b/iptables/service.sls
index ebccf0a..843dff8 100644
--- a/iptables/service.sls
+++ b/iptables/service.sls
@@ -21,6 +21,7 @@
   iptables.set_policy:
     - chain: {{ chain_name }}
     - policy: {{ chain.policy }}
+    - table: filter
 {%- endif %}
 
 {%- for rule_name, rule in chain.get('rule', {}).iteritems() %}