Project

General

Profile

Actions

Feature #13124

open

Option to wait for interface selection before displaying firewall rules

Added by Chris Rowe about 2 months ago. Updated about 14 hours ago.

Status:
Pull Request Review
Priority:
Normal
Assignee:
-
Category:
Web Interface
Target version:
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
22.11
Release Notes:
Default

Description

The default behaviour of firewall_rules.php is to load all firewall rules on the WAN interface if no interface has been previously selected. When a large number of WAN side port forwards/firewall rules, etc exist, loading these rules can put a lot of load on the firewall. On a sufficiently loaded firewall this can actually impact packet forwarding, sometimes leading to packet loss.

It would be good to have an option similar to what exists for viewing state table entries(https://github.com/pfsense/pfsense/commit/88081ea257fa683ed28b588c4c35260589604741), requiring the interface to be set before loading the firewall entries.

I've already added a pull request with this feature https://github.com/pfsense/pfsense/pull/4582

Actions #1

Updated by Jim Pingle about 2 months ago

  • Target version set to 2.7.0
  • Plus Target Version set to 22.05
Actions #2

Updated by Jim Pingle about 2 months ago

  • Status changed from New to Pull Request Review
Actions #3

Updated by Jim Pingle about 1 month ago

  • Plus Target Version changed from 22.05 to 22.09

Move this ahead since it's a bit late to get in new features with a potentially high impact.

Actions #4

Updated by Jim Pingle about 14 hours ago

  • Plus Target Version changed from 22.09 to 22.11
Actions

Also available in: Atom PDF