On 07/11/2011 02:09, U.Mutlu wrote: > > Hmm. I think in my case this method is suboptiomal because my > iptables rules do change very frequently (ie. banning individual > ip's at different times and then unbanning each after say x minutes, > again individually, ie. not as a group). > > I think in this case I should stick with libiptc since it's still > part of the official iptables distribution. This is starting to sound like something ipset could help with? Ed W -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html