I've been using the IP Sets by DNS for firewall filtering which is based from this docs: https://openwrt.org/docs/guide-user/firewall/fw3_configurations/dns_ipset
This in turn uses the IP Set Extra script https://openwrt.org/docs/guide-user/advanced/ipset_extras
Currently the script includes setting up a cron scheduled every 3 hours which calls the ipset setup
.
Now my question is, is there a better way to update the IP Sets without really restarting the firewall (which the scripts does automatically)? Or a once a day or once a week schedule would be better?
Right now, i've change my schedule to once a day in the early morning.
The issue is actually the "firewall restart" call which stops/drops all outside network activity somehow on all of my setups (including test setups). So for example, we are streaming a movie, when the script runs, the stream stops because technically the connection got dropped after the firewall restart.