Re: iptables very slow after commit 784544739a25c30637397ace5489eeb6e15d7d49
From: Arkadiusz Miskiewicz <hidden>
Date: 2009-04-11 18:33:18
Also in:
lkml, netfilter-devel
From: Arkadiusz Miskiewicz <hidden>
Date: 2009-04-11 18:33:18
Also in:
lkml, netfilter-devel
On Saturday 11 of April 2009, Kyle Moffett wrote:
Almost all of the standard firewall tools (such as shorewall, etc) are already using iptables-restore command to load firewall rules, primarily because using separate iptables commands was *already* way too slow.
Some time ago there was batch patch that allowed to use standard shell format of calling iptables but did everything at once: http://lists.netfilter.org/pipermail/netfilter-devel/2004- September/016704.html It didn't get merged - no idea why. -- Arkadiusz Miśkiewicz PLD/Linux Team arekm / maven.pl http://ftp.pld-linux.org/ -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html