When the Onload drivers are loaded, firewall rules exist in the Linux proc pseudo file system at:
/proc/driver/sfc_resource
Within this directory the firewall_add, firewall_del and resources files will be present. These files are writable only by a root user. No attempt should be made to remove these files.
Once rules have been created for a particular interface – and only while these rules exist – a separate directory exists which contains the current firewall rules for the interface:
/proc/driver/sfc_resource/ethN/firewall_rules