[pve-devel] sdn : duplicate nat rules because of post-up reload

DERUMIER, Alexandre alexandre.derumier at groupe-cyllene.com
Fri Nov 24 10:58:47 CET 2023


Hi,

I think that current nat rules management is not too great,

because we use post-up script, and it's duplicate rules at each reload.


I'm not sure what is the best way to handle this ?


- a post-up  calling a special script, doing the diff  / upsert  ?

- or implement it in pve-firewall daemon ?  (should be better &&
faster)


More information about the pve-devel mailing list