Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-19610

RFE: improvements startup and restart, strive for atomicity

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • firewalld
    • None
    • sst_networking_core
    • ssg_networking
    • 15
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None

      Goal

      • firewalld startup and restart (e.g. package upgrade) should handle the rule application atomically

      Acceptance Criteria

      A list of verification conditions, successful functional tests, or expected outcomes in order to declare this story/task successfully completed.

      • startup should limit round trips to nftables/kernel; remove corner cases around ipset (nftables backend)
      • DO NOT restart firewalld on package update, continue running existing code
        OR
      • "systemctl restart firewalld" should temporarily set `CleanupOnExit=yes`; see the CLI option below
      • new CLI command --enable-cleanup-on-exit, --disable-cleanup-on-exit; this is currently only a permanent config option

            thaller@redhat.com Thomas Haller
            egarver Eric Garver
            Eric Garver Eric Garver
            qe-baseos-daemons qe-baseos-daemons
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated: