From: [EMAIL PROTECTED] > What is bothering me is the sentence: > Rules are processed in the order in which they were added to > the interface, > and the first rule matched takes the action ... > > Does this really mean that no hash function is used? I mean > if I have 20000 > MAC Addresses and want to check **each packet** against this > list serially, > I suppose I had better forget about it!
Don't you already have problems if you have 20,000 nodes communicating on one flat broadcast domain already? DS

