Martin Steigerwald - 14.01.19, 23:38: > Package: iptables > Version: 1.8.2-3 > Severity: important […] > I upgraded to self-compiled 5.0-rc2 today and found the machine to be > slow after startup. I saw iptables consuming 100% CPU, it only > responded to SIGKILL. It got restarted several times, probably by > some systemd service. > > Then I started 'iptables -nvL' manually. And I got this:
[… strace output with what appears to be a loop on recvmsg …] [… atop output showing iptables using 5 GiB + of resident memory …] > I will attach kernel configuration. > > That is all I am willing to spend time on for now before going to > sleep. I will however reboot with older 4.20 kernel to see whether it > is kernel related. It appears to be kernel related. I do not see this behavior with self- compiled 4.20 kernel. Attaching both configuration for both kernels. […] -- Martin
config-4.20.0-tp520.xz
Description: application/xz
config-5.0.0-rc2-tp520.xz
Description: application/xz