[Bug 264198] bridge, ipfw: very slow network on bridge with IPFW, virtio or vtnet on 12.3-RELEASE-p5

From: <bugzilla-noreply_at_freebsd.org>
Date: Wed, 25 May 2022 07:20:28 UTC

--- Comment #3 from Ole <ol@dbconn.net> ---

I have done some further investigations. And I could reproduce it with fewer

My Host has one NIC. On this nic is a vlan. The vlan is bridged to an epair
interface. If I turn on IPFW throughput gets slow.

The setup:


host-a # ifconfig epair create mtu 1400
host-a # ifconfig bridge4030 addm epair0a
host-a # ifconfig epair0a up
host-a # ifconfig epair0b inet <IP_ADDR>/28 mtu 1400 up
host-a # nc -v -l 2222 > /dev/null

I can now send from some other Host in the same Network via nc:
host-b # dd if=/dev/zero bs=1024k count=6 | nc -v host-a 2222

IPFW started: 6291456 bytes transferred in 30.689174 secs (205006 bytes/sec)
IPFW stopped: 6291456 bytes transferred in 0.070876 secs (88766689 bytes/sec)

this is more than 400 times faster without IPFW running on host-a. And again,
the only rule is

host-a # ipfw list
65535 allow ip from any to any

