On 25 Aug 2013, at 12:11 , Niclas Arndt <niclas_ar...@hotmail.com> wrote:
> Here are my questions: Is the iptables approach at all viable in the long run? No. This is why RBLS use DNS, because DNS is cheap and it caches automatically. If you are blocking a few sites, (even a few thousand) that is one thing, but when you are trying to block millions? That is something else. Do you want IPTables to have millions of IPs? -- and I lift my glass to the Awful Truth / which you can't reveal to the Ears of Youth / except to say it isn't worth a dime