OpenVZ Forum


Home » General » Support » iptables modules in VE
Re: iptables modules in VE [message #32664 is a reply to message #32663] Fri, 22 August 2008 13:53 Go to previous messageGo to previous message
crea is currently offline  crea
Messages: 3
Registered: August 2008
Junior Member
Ofcourse I can live without ipset, but it would be sad. I read that ipset makes matching very fast so you can have long matching rules, blacklists for example, without significant performance loss. If I can choose, I just use solution that wouldn't make me any headache in future, so I would use ipset and don't care that long iptables rules slow my server.
I can make my firewall reside completely in HW node but that is not proper design ( everything about VE should be in VE )
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: Unable to chkpnt/restore
Next Topic: Configuring a veth
Goto Forum:
  


Current Time: Sun Sep 07 02:50:12 GMT 2025

Total time taken to generate the page: 0.10807 seconds