fw4/nftables - performance seriously degraded after upgrade to 22.03.5 (from 21.03)

2023-05-26 Thread Luiz Angelo Daros de Luca
Hello, After I upgraded to 22.03.5 (from 21.03.x), I noticed that the performance was seriously degraded. The reason was that fw4/nftables was not handling a large number of rejections the same way as fw3/iptables. If I disable the log, the router is back to normal. I don't know if fw3 was implici

Re: fw4/nftables - performance seriously degraded after upgrade to 22.03.5 (from 21.03)

2023-05-26 Thread Luiz Angelo Daros de Luca
> Would it be too complex to implement a log limit for fw4? Not really. But I might not have followed the best practices as this is my first run on ucode/nftables: https://github.com/luizluca/firewall4/tree/log_limit It needs some more tests on cases that I'm not using in production and a test i