When adding undefined ipset rules in firewalld, existing rules are lost.
Issue
When adding an invalid ipset-rule via firewall-cmd --permanent, the network becomes unresponsive. The invalid rule leads to the previous, valid rules getting removed. It also happens in latest firewalld and nftables version.
Environment
- Red Hat Enterprise Linux, all versions with
firewalldandnft - firewalld
- nftables
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.