Feature #13124
closed
Option to wait for interface selection before displaying firewall rules
Added by Chris Rowe almost 4 years ago.
Updated over 2 years ago.
Plus Target Version:
23.09
Description
The default behaviour of firewall_rules.php is to load all firewall rules on the WAN interface if no interface has been previously selected. When a large number of WAN side port forwards/firewall rules, etc exist, loading these rules can put a lot of load on the firewall. On a sufficiently loaded firewall this can actually impact packet forwarding, sometimes leading to packet loss.
It would be good to have an option similar to what exists for viewing state table entries(https://github.com/pfsense/pfsense/commit/88081ea257fa683ed28b588c4c35260589604741), requiring the interface to be set before loading the firewall entries.
I've already added a pull request with this feature https://github.com/pfsense/pfsense/pull/4582
- Target version set to 2.7.0
- Plus Target Version set to 22.05
- Status changed from New to Pull Request Review
- Plus Target Version changed from 22.05 to 22.09
Move this ahead since it's a bit late to get in new features with a potentially high impact.
- Plus Target Version changed from 22.09 to 22.11
- Plus Target Version changed from 22.11 to 23.01
- Plus Target Version changed from 23.01 to 23.05
- Plus Target Version changed from 23.05 to 23.09
- Assignee set to Jim Pingle
- Target version changed from 2.7.0 to CE-Next
- Category changed from Web Interface to Rules / NAT
- Status changed from Pull Request Review to In Progress
- Target version changed from CE-Next to 2.8.0
- Status changed from In Progress to Feedback
- % Done changed from 0 to 100
Applied in changeset commit:c451853836ae3e00ec20aa666c64a198d08b402c.
Tested on:
23.09-DEVELOPMENT (amd64)
built on Sat Aug 26 17:37:15 UTC 2023
FreeBSD 14.0-ALPHA2
Looks good.
- Status changed from Feedback to Resolved
- Target version changed from 2.8.0 to 2.7.1
Also available in: Atom
PDF