IPS rules http not match in NFQUEUE

In your iptables rules you need to make sure that both sides of the traffic are sent to the same nfqueue. The listed rule suggests only “output” traffic, so “input” may be missing?