Feature added by: Don Hughes (dehughes) Feature #308441, revision 1 Title: Use ip_set kernel option Package Wishlist: Unconfirmed Priority Requester: Desirable Requested by: Don Hughes (dehughes) Description: Compile RT kernel with the ip_set netfilter option, and include the ipset module in the distribution. The ipset module ( http://ipset.netfilter.org ) can be very useful in building firewalls for large networks. It needs the ip_set kernel module. Creating a firewall black list with just iptables could entail a filter table with a very large number of entries which can have a significant performance impact. ipset can be used to build much more eficient lookup tables, improving performance. -- openSUSE Feature: https://features.opensuse.org/308441