Hello,
the transaction model that has been introduced with firewalld-0.4.2 makes it
possible to group rules together and to apply them at once and quick. For this
the restore commands of iptables, ip6tables and ebtables are used as long as
they are available.
At the moment the transaction model is only used inside of firewalld. It
applies all the generated and provided rules in a small amount of transactions.
This speeds up load and reload times of firewalld drastically.
There is no external interface to add transaction by services or applications
right now.
Because of this I'd like to get feedback from the D-Bus interface and command
line consumers: Is there interest in using transactions at all? What are the
needs and wishes?
With this information it should then be possible to get to a good and stable
interface. This will most likely an iterative process with some test and proof
of concept implementations.
Please provide information about your needs and wishes.
Regards,
Thomas