On 6/21/24 22:24, Marco Moock wrote:
Am Fri, 21 Jun 2024 16:17:01 -0600
schrieb R C <cjvijf@gmail.com>:

I used iperf3, and  when not under load, cpu nor bandwidth, it shows
a 10% bandwidth loss (over IB)
Can you track down the reason for that?
Is that already related to the firewall (nftables, maybe invoked by
firewalld) or to anything other?

yes the differences in performance show up when I  run iperf3 with the firewall disabled/stopped versus the firewall running


(on a side note,  what would be more 'expensive' for the firewall to implement,  a port opened with "firewall-cmd --add-port=22/tcp"  or have a rich rule that does the same thing for a set of source IPs?)

--
_______________________________________________
firewalld-users mailing list -- firewalld-users@lists.fedorahosted.org
To unsubscribe send an email to firewalld-users-leave@lists.fedorahosted.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedorahosted.org/archives/list/firewalld-users@lists.fedorahosted.org
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue