From mboxrd@z Thu Jan 1 00:00:00 1970 From: KOVACS Krisztian Subject: Re: tc filtering vs iptables Date: Fri, 27 Aug 2004 22:42:05 +0200 Sender: netfilter-devel-bounces@lists.netfilter.org Message-ID: <20040827204205.GB4797@sch.bme.hu> References: <1093614389.1068.20.camel@jzny.localdomain> <1093632324.14188.2.camel@jzny.localdomain> <20040827201137.GB9274@ti64.telemetry-investments.com> <1093638474.14190.29.camel@jzny.localdomain> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: netfilter-devel@lists.netfilter.org, Henrik Nordstrom , "Bill Rugolsky Jr." Return-path: To: jamal Content-Disposition: inline In-Reply-To: <1093638474.14190.29.camel@jzny.localdomain> List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: netfilter-devel-bounces@lists.netfilter.org List-Id: netfilter-devel.vger.kernel.org Hi, On Fri, Aug 27, 2004 at 04:27:54PM -0400, jamal wrote: > What a painful experience it is to install large rules. > about 20 minutes to install 16K rules. Not sure if this is > even worth pursuing anymore You're using the 'iptables' command, I guess. Probably you should try iptables-restore, it is definitely _the_ tool you'll need when installing large rulesets. -- KOVACS Krisztian