Hacker News new | ask | show | jobs
by pepa65 898 days ago
This should happen in-kernel and is lightning-fast, so should not be an issue. Maybe a pre-netfilter box..?
1 comments

Big iptables lists are indeed incredibly slow; use ipset for large lists instead.