hi, try to split up your input rules into some custom chains that the packets have not a really long way to traverse your input chain thats what i would do.. greets matthias > -----Original Message----- > From: netfilter-bounces@xxxxxxxxxxxxxxxxxxx > [mailto:netfilter-bounces@xxxxxxxxxxxxxxxxxxx]On Behalf Of > Jan Eidtmann > Sent: Wednesday, September 14, 2005 2:43 PM > To: netfilter@xxxxxxxxxxxxxxxxxxx > Subject: big table tweaks ? > > > hello, > > i have one kind of big table with 80.000+ rules. its referenced in > INPUT. lookup (when someone wants to connect) is kinda slow and system > hangs noticable (desktop usage). i tried preemptive and non_preemptive > kernels, its all the same. so, is there anything i could tweak to make > this run smooth? > > thx in advance, > jan > > > note: i am not subscribed... > >