On 02/07/11 00:54, Srinivasa T N wrote:
This will double the number of rules a packet has to traverse (One rule
for accounting and one rule for accept). Is there are other alternative?
I'd have to see an example of your rules to say for sure...
I'm using the counters of the number of packets / bytes that are matched
by the rule for accounting. I'm not adding any additional rules.
Further, you can engineer your rule structure so that the fewest rules /
tests per rule are traverse by the largest number of packets.
Grant. . . .
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html