Thursday, September 10, 2009

[BLUG] IPtables

Okay, I am starting to get into some really long DROP lists in my
IPtables config and was wondering what others on the list thought
about best placement of the DROPs vs ACCEPTs. Do you have your drops
early in the file so that they blocks IPs get denied as quickly as
possible or do you have your allows earlier in the file?

Is one way really more efficient than the other?

Thank you,
Scott Blaydes
_______________________________________________
BLUG mailing list
BLUG@linuxfan.com
http://mailman.cs.indiana.edu/mailman/listinfo/blug

No comments: