| To: | "Sven Schuster" <schuster.sven@gmx.de> |
|---|---|
| Subject: | RE: Dynamic chain alternatives |
| From: | "Gary W. Smith" <gary@primeexalia.com> |
| Date: | Mon, 20 Nov 2006 08:21:49 -0800 |
| Cc: | netfilter@lists.netfilter.org |
| Delivered-to: | sp-com-lists@consult.net |
| Delivered-to: | netfilter-list1@securepoint.com |
| In-reply-to: | <20061120065509.GA18079@zion.homelinux.com> |
| List-archive: | </pipermail/netfilter> |
| List-help: | <mailto:netfilter-request@lists.netfilter.org?subject=help> |
| List-id: | General discussion and user questions <netfilter.lists.netfilter.org> |
| List-post: | <mailto:netfilter@lists.netfilter.org> |
| List-subscribe: | <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe> |
| List-unsubscribe: | <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe> |
| Sender: | netfilter-bounces@lists.netfilter.org |
| Thread-index: | AccMccauADVC0lRPS1yy/12Dz5Qt5wATi9sg |
| Thread-topic: | Dynamic chain alternatives |
That should work. Thanks. -----Original Message----- From: Sven Schuster [mailto:schuster.sven@gmx.de] Sent: Sunday, November 19, 2006 10:55 PM To: Gary W. Smith Cc: netfilter@lists.netfilter.org Subject: Re: Dynamic chain alternatives Hi Gary, On Sun, Nov 19, 2006 at 05:23:53PM -0800, Gary W. Smith told us: > I have a need to create a dynamic table in that will have random IP's > inserted and deleted on a regular basis. Currently we do this by > creating a chain at load time and on a scheduled basis we flush that > chain and then to a iptables-restore -n < dynamic_rules.txt. > > Is there a better approach to doing this? what about using ipset?? http://www.netfilter.org/projects/ipset/index.html hope that helps, Sven > Gary Wayne Smith > -- Linux zion.homelinux.com 2.6.18-1.2849.fc6xen #1 SMP Fri Nov 10 13:56:52 EST 2006 i686 athlon i386 GNU/Linux 07:54:34 up 4 days, 9:12, 1 user, load average: 0.07, 0.13, 0.13 |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: [announce] iptables-tutorial 1.2.2 book, Pablo Sanchez |
|---|---|
| Next by Date: | Re: ipset: how to run non-root, R. DuFresne |
| Previous by Thread: | Re: Dynamic chain alternatives, Sven Schuster |
| Next by Thread: | need advice - research project, Rodrigo Lazo |
| Indexes: | [Date] [Thread] [Top] [All Lists] |