NAT GUI slow when using PfBlockerNG Alias
-
Hi!
I use PfBlockerNG lists in alias native mode, custom ipv4 lists. I attach the alias to NAT rules.One or two rules its fine but when I apply it to more rules, 15, the NAT GUI page takes for every to load, about a minute. I assume its because the alias is huge being mostly US/US_rep.
Is that normal/expected? Any way I can speed it up? Memory usage is fairly low, less 10% of 4gb.
thanks you
-
@mattch it downloads the alias for each rule I think. Or at least processes it.
There’s one trick we found, at least for our purposes …instead of using the alias as a NAT source, allow any and control the access using one firewall rule for all applicable ports. So, disable the automatic rule creation and create your own. That way the alias is not on the NAT tab and is listed once on the interface tab.