Also note that rule set optimization was speeded up by an order of magnitude in 
Shorewall 5.2.4.

Tom

On November 17, 2020, at 6:56 AM, Tuomo Soini <t...@foobar.fi> wrote:

On Tue, 17 Nov 2020 15:13:51 +0100
Marko Horn via Shorewall-users <shorewall-users@lists.sourceforge.net>
wrote:

> >>> hello list,
> >>> i use shorewall with large blrules that got updated once a day.

Using blrules is bad idea if you have large set of blacklist entries.
Consider switching to ipset for blacklisting. You don't even need to
reload shorewall to update ipset blacklist.


-- 
Tuomo Soini <t...@foobar.fi>
Foobar Linux services
+358 40 5240030
Foobar Oy <https://foobar.fi/>


_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to