While i can't give you exact configurations, i can say it's a
simple configuration on dnsmasq feeding some ipset sets based on domains
(plain simple configuration) and those sets being used by iptables rules.
While the set sizes simply doesn't matter when you have Gbs of RAM,
when
Hey Leondaro,
Can you share your setup details?
It's kind of interest me.
Eliezer
Eliezer Croitoru
Linux System Administrator
Mobile: +972-5-28704261
Email: elie...@ngtech.co.il
-Original Message-
From: Dnsmasq-discuss On
Behalf
I'm no ipset expert, but it looks to me like you can get this effect
anyway, by creating the ipset as type hash:ip and specifying a netmask.
http://ipset.netfilter.org/ipset.man.html
hash:ip
The hash:ip set type uses a hash to store IP host addresses (default) or
network addresses. Zero valued