Thanks. I see that now after digging around. I started analyzing the script to see how things were done and I found that the author does add the lists to the raw table in the PREROUTING and OUTPUT chain.
iptables -t raw -I PREROUTING -i "$iface" -m set ! --match-set Skynet-Whitelist...
Ok, I installed Skynet and I guess I'm missing something... Maybe someone can explain this to me.
I can see the lists created by Skynet by executing 'ipset -list -t'. I'll just list to a couple for example.
Name: Skynet-BlockedRanges
Type: hash:net
Revision: 6
Header: family inet hashsize...
Ok, my issue was tcp congestion on the nic. I forgot I was working on the sysctl.conf file and had a stripped down file in it's place. Of course when I did a rare reboot I forgot about it all my net.ipv4 and net.core settings weren't loaded. All is good here.
I isolated my issue to the box running iperf. For some reason the nic in that box started limiting traffic in one direction to 50%. The RT-AX86U's in mesh are fine. My issue started Sunday.
New firmware.
https://www.asus.com/Networking-IoT-Servers/WiFi-6/All-series/RT-AX86U/HelpDesk_BIOS/
Version 3.0.0.4.386.44130
2021/06/28 73.13 MBytes
ASUS RT-AX86 Series(RT-AX86U/RT-AX86S) Firmware version 3.0.0.4.386.44130
1. Add Hinet MOD Mesh...