Also note that rule set optimization was speeded up by an order of magnitude in Shorewall 5.2.4.
Tom On November 17, 2020, at 6:56 AM, Tuomo Soini <t...@foobar.fi> wrote: On Tue, 17 Nov 2020 15:13:51 +0100 Marko Horn via Shorewall-users <shorewall-users@lists.sourceforge.net> wrote: > >>> hello list, > >>> i use shorewall with large blrules that got updated once a day. Using blrules is bad idea if you have large set of blacklist entries. Consider switching to ipset for blacklisting. You don't even need to reload shorewall to update ipset blacklist. -- Tuomo Soini <t...@foobar.fi> Foobar Linux services +358 40 5240030 Foobar Oy <https://foobar.fi/> _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users