  • Temporary workaround provided by Support Engineer which I believe I can share here.

    You need to modify the timer value in /sys/class/net/<affected_interface_name>/bridge/ageing_time from 0 to 30000. In my case:

    # echo 30000 > /sys/class/net/wlnet3/bridge/ageing_time

    After above modification traffic started to hit the firewall rule as before the upgrade to v19.0.1 MR-1.

