[Bug 1439] Atomically updating/reloading a large set with nft -f is excessively slow

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Fri Jul 3 02:33:44 CEST 2020


https://bugzilla.netfilter.org/show_bug.cgi?id=1439

kfm at plushkava.net changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |kfm at plushkava.net

--- Comment #3 from kfm at plushkava.net ---
This seems to be a duplicate of bug 1392, for which I still haven't discerned
any operational workaround.

My view is that some serious thought should be given to supporting ipsets. As
you have noticed, the present implementation of native sets suffers from
various bugs and, though it pains me to say it, it just isn't stable enough to
usurp ipsets at the current time.

-- 
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20200703/ab5f68a4/attachment-0001.html>


More information about the netfilter-buglog mailing list