[Bug 1728] Regression: iptables lock is now waited for without --wait

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Mon Dec 18 19:01:04 CET 2023


https://bugzilla.netfilter.org/show_bug.cgi?id=1728

Antonio Ojea <antonio.ojea.garcia at gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Priority|P5                          |P1
                 CC|                            |antonio.ojea.garcia at gmail.c
                   |                            |om
           Severity|normal                      |major

--- Comment #1 from Antonio Ojea <antonio.ojea.garcia at gmail.com> ---
This change in behavior is problematic for environments like Kubernetes that
heavily use iptables, because applications that were not counting on wait for a
lock will now start blocking.

Despite a lot of environments are using iptables-nft these days, there is
always a long tail in the industry with environments that are still using
iptables-legacy.

-- 
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20231218/9ef7a059/attachment.html>


More information about the netfilter-buglog mailing list