Hello everyone. I'm thinking about implementing iptables MAC Address filtering (-m mac --mac-source xx:xx....) in my network. *BUT* I have a big network, with ~ 4000 internal hosts/IPs that will be filtered via MAC, and I'm not sure about the performance of this filtering. Is the speed/performance the same for Mac filtering and IP filtering? Or the MAC filtering (because it's more complex maybe?) is slower and add overhead in a huge network. Thanks in advance for any help. Best, Babu - To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html