-
Story
-
Resolution: Unresolved
-
Major
-
None
-
None
-
Important
-
1
-
rhel-net-firewall
-
None
-
False
-
False
-
-
None
-
NST-firewall-26W8-11
-
None
-
None
-
Unspecified
-
Unspecified
-
Unspecified
-
None
Prior motivation for reducing the amount of caching to the bare minimum has been performance in large rulesets.
Another application is mitigating side-effects of mixing different versions of nftables in the same netns: Trying to parse a newer version's ruleset content may lead to crashes or other unexpected behaviour. Support working with one's own ruleset elements by making sure other's are not touched by accident.