Mailinglist Archive: opensuse-features (435 mails)

< Previous Next >
[New: openFATE 308441] Use ip_set kernel option
  • From: fate_noreply@xxxxxxx
  • Date: Wed, 2 Dec 2009 00:10:32 +0100 (CET)
  • Message-id: <feature-308441-1@xxxxxxxxxxxxxx>
Feature added by: Don Hughes (dehughes)

Feature #308441, revision 1
Title: Use ip_set kernel option

Package Wishlist: Unconfirmed
Priority
Requester: Desirable

Requested by: Don Hughes (dehughes)

Description:
Compile RT kernel with the ip_set netfilter option, and include the ipset
module in the distribution.

The ipset module ( http://ipset.netfilter.org ) can be very useful in building
firewalls for large networks.  It needs the ip_set kernel module.

Creating a firewall black list with just iptables could entail a filter table
with a very large number of entries which can have a significant performance
impact. ipset can be used to build much more eficient lookup tables, improving
performance.

--
openSUSE Feature:
https://features.opensuse.org/308441

< Previous Next >
List Navigation
References