[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Optimizing Kernel for huge iptables ruleset



Hello Martin, 

On Tue, 19 Oct 2004 14:04:00 +0200
"Martin G.H. Minkler" <dukeofnukem@gmx.net> wrote:
> Two iptables rulesets:
> The first 'normal' ruleset is pretty restrictive against connetions
> from the outside, more or less open towards connections opened from
> the LAN. The second ruleset inserted after the first is a huge IP
> blacklist (1.4MB iptables script!) that takes nearly half an hour to
> be inserted into the running ruleset.
Have you try to load your second ruleset with hipac?
http://www.hipac.org/

Agreed their site, it loads faster iptables ruleset, and both tools
could be use together.

Greetings
Jerome



Reply to: