From mboxrd@z Thu Jan 1 00:00:00 1970 From: Mohan Sundaram Date: Tue, 20 Nov 2007 03:15:11 +0000 Subject: Re: [LARTC] Which CPU for heavy traffic with much filtering/shaping? Message-Id: <47424E6F.5030101@vsnl.com> List-Id: References: <47415A73.9020107@interdart.co.uk> In-Reply-To: <47415A73.9020107@interdart.co.uk> MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: lartc@vger.kernel.org Derek Sims wrote: > Marek Kierdelewicz wrote: > > Hmm - I don't know what the "set" module is - can you point me to some > documentation please? Search for ipset extensions for iptables or look up extension projects in netfilter.org. ipset gives the facility to create sets of IPs and use the sets in iptables rules. Makes the rules more orderly, easy to read, easy to manage and is easier on the CPU. Mohan _______________________________________________ LARTC mailing list LARTC@mailman.ds9a.nl http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc