plugins
plugins copied to clipboard
os-haproxy - ACL source IP matches any IPv6 - produce lag/delay
Important notices Before you add a new report, we ask you kindly to acknowledge the following:
- [ x ] I have read the contributing guide lines at https://github.com/opnsense/plugins/blob/master/CONTRIBUTING.md
- [ x ] I have searched the existing issues, open and closed, and I'm convinced that mine is new.
- [ x ] The title contains the plugin to which this issue belongs
Describe the bug Trying to add any IPv6 address under HAProxy conditions/ACL's will cause lag/delay on each apply/test syntax.
To Reproduce Steps to reproduce the behavior:
- Go to 'Services --> Haproxy --> Settings -->Rules & Checks --> Conditions'
- Create new condition, condition type: "Source IP matches specified IP", set Source IP: 2400:cb00::/32 or any IPv6 subnet
- Create any rule that will use the above condition.
- Configure the rule to any in-use front-end / Public Service
- After this change, any change to HAProxy will take 10+ seconds; this will not produce any errors in logs, but will delay any future Apply / Test syntax
- Deactivating this check will resume any operation to the normal state.
Expected behavior A clear and concise description of what you expected to happen. Since no error is triggered, it would be nice to identify the root cause to be able to use IPv6 IP addresses in the source without this delay on any further change.
Screenshots If applicable, add screenshots to help explain your problem.
Relevant log files Nothing found in logs
Environment
OPNsense 25.1.6_4-amd64 FreeBSD 14.2-RELEASE-p3 OpenSSL 3.0.16