From: Jo-Philipp Wich Date: Thu, 3 Feb 2022 22:35:35 +0000 (+0100) Subject: fw4: disable "flow_offloading_hw" option for now X-Git-Url: http://git.openwrt.org/%22https:/collectd.org//%22/%22https:/collectd.org/%22?a=commitdiff_plain;h=7cb10c809314261c20ddca069eacd469adf44be3;p=project%2Ffirewall4.git fw4: disable "flow_offloading_hw" option for now Currently there does not appear to exist any kernel side nft flowtable implementation that supports hardware flow offloading. Attempting to upload a ruleset containing a flowtable declaration with the hardware offloading flag set will fail with a generic EOPNOTSUPP error. Since there is neither a graceful recovery (e.g. continue without hardware flow offloading) nor any possibility to probe kernel side support from userspace, disable the facility entirely for now. Signed-off-by: Jo-Philipp Wich --- diff --git a/root/usr/share/ucode/fw4.uc b/root/usr/share/ucode/fw4.uc index 175883f..7a2cd75 100644 --- a/root/usr/share/ucode/fw4.uc +++ b/root/usr/share/ucode/fw4.uc @@ -1695,7 +1695,7 @@ return { custom_chains: [ "bool", null, UNSUPPORTED ], disable_ipv6: [ "bool", null, UNSUPPORTED ], flow_offloading: [ "bool", "0" ], - flow_offloading_hw: [ "bool", "0" ] + flow_offloading_hw: [ "bool", "0", UNSUPPORTED ] }); if (defs.synflood_protect === null)