Here we see the iterating the application of the FW rules really takes the ~10 seconds we see.
This somewhat reminds me of [1] but that was implemented somehwn in 14.10 time or so. Never the less, the slowness of these applies is what we need to track down. I will raise the debug level one more and look there + in the related code (after some meetings) [1]: https://www.berrange.com/posts/2014/05/02/improving-libvirt- firewall-performance/ ** Attachment added: "client-server-stall-nwfilter-merged.log" https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1727366/+attachment/4996621/+files/client-server-stall-nwfilter-merged.log -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1727366 Title: virsh start/destroy is too slow after adding firewall rule To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1727366/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
