Kmod-nft-offload
With kmod-nft-offload + compatible hardware:
lsmod | grep nft_offload Create a simple forwarding rule with offload: kmod-nft-offload
Check offload status:
dnf install kmod-nft-offload On Debian/Ubuntu (module may be built-in or named differently, e.g., nft-offload ): With kmod-nft-offload + compatible hardware: lsmod | grep
Packet → NIC → Host CPU → nftables (kernel) → Forward/Drop → Host CPU → NIC → Wire Every packet consumes CPU cycles, limiting throughput, especially at 10 GbE, 25 GbE, or higher. especially at 10 GbE