firewalld with HUGE list of ip to drop

Jeffrey Walton noloader at gmail.com
Mon Apr 15 16:05:35 UTC 2024


On Sat, Apr 13, 2024 at 5:12 PM Jerry Geis <jerry.geis at gmail.com> wrote:

>
> [...]
>
> THanks All for the suggestions -  I did get ipset to work.
> firewalld - took 20 minutes load all the rules and impacted - network
> performance
> ipset loads all the same rules in 1 min 20 seconds - network performance
> is not impacted.
>
> I did see "hints" that ipset may be going away - is there any truth to
> that ? I could not find anything definite ?
>

I don't know where Debian and Ubuntu are headed. I don't recall reading a
discussion about it.

But Fedora switched to nftables, see <
https://docs.fedoraproject.org/en-US/fedora/f32/release-notes/sysadmin/Networking/
>.

Jeff
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/ubuntu-users/attachments/20240415/9ca6628b/attachment.html>


More information about the ubuntu-users mailing list