On Tue, May 20, 2003 at 09:50:01AM +0200, Ralf Spenneberg spoke thusly: >Am Die, 2003-05-13 um 17.40 schrieb Michael Albrecht: >> iptables -A input -s 192.168.81.xxx >> i will lose a lot of perfomance (for >> example: apache take a lot of time, ssh ...) Wenn i show the perfomance >> with vmstat - vmstat says that 99 % is As Michael has already mentioned, I too doubt its an iptables fault. I've had in excess of 1,300 rules running on a production firewall, for dynamic dumping of Nimda infected hosts. Its almost certainly a name resolving issue as Michael has already pointed to.