I’ve entered quite a big firewall group, blacklisting net scanners, up to 1k hosts in it:
sh fire group address-group | wc -l
and realized that config became too big for smooth mounting. It takes about 5 minutes stacking on mounting over a bare metal host with 2G RAM. Despite, frankly, it says “Mounting…done” before “Configuration success”. What if I enter over 5K records, or several network groups? Is it ok and behaves as expected, or I’m braking a good firewall practice with such a clumsy straight blocking approach?