All of lore.kernel.org
 help / color / mirror / Atom feed
* Number of concurrent connections?
@ 2008-05-29 21:15 Greg Scott
  2008-06-01 21:15 ` Patrick McHardy
  0 siblings, 1 reply; 3+ messages in thread
From: Greg Scott @ 2008-05-29 21:15 UTC (permalink / raw)
  To: netfilter-devel

Hello - 
 
How fast has anyone pushed netfilter?  Assuming I can put together a
beefy enough hardware platform, what are the possibilities of supporting
1 million concurrent connections with at least 2gb per second stateful
packet filtering throughput? 
 
Let's say I can get my hands on 10gb NICs - how fast can netfilter push
them?
 
thanks
 
- Greg Scott

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Number of concurrent connections?
  2008-05-29 21:15 Number of concurrent connections? Greg Scott
@ 2008-06-01 21:15 ` Patrick McHardy
  0 siblings, 0 replies; 3+ messages in thread
From: Patrick McHardy @ 2008-06-01 21:15 UTC (permalink / raw)
  To: Greg Scott; +Cc: netfilter-devel

Greg Scott wrote:
> Hello - 
>  
> How fast has anyone pushed netfilter?  Assuming I can put together a
> beefy enough hardware platform, what are the possibilities of supporting
> 1 million concurrent connections with at least 2gb per second stateful
> packet filtering throughput? 

I've heard of a lot bigger setups with multiple (IIRC 10) million
concurrent connection.

> Let's say I can get my hands on 10gb NICs - how fast can netfilter push
> them?

I don't know, but I'd be interested in that too :)

^ permalink raw reply	[flat|nested] 3+ messages in thread

* RE: Number of concurrent connections?
@ 2008-06-03 20:35 Greg Scott
  0 siblings, 0 replies; 3+ messages in thread
From: Greg Scott @ 2008-06-03 20:35 UTC (permalink / raw)
  To: Patrick McHardy; +Cc: netfilter-devel

Thanks - it evidently took almost a week for this to post on the list -
and I never did get an email back that said my subscription started.
Holy moley!  

Anyway, we ended up declining the project.  It turned out, of the
requirements was EAL5 certification and I wasn't able to find any Linux
distro that's gone to the trouble.

- Greg


-----Original Message-----
From: Patrick McHardy [mailto:kaber@trash.net] 
Sent: Sunday, June 01, 2008 4:16 PM
To: Greg Scott
Cc: netfilter-devel@vger.kernel.org
Subject: Re: Number of concurrent connections?

Greg Scott wrote:
> Hello -
>  
> How fast has anyone pushed netfilter?  Assuming I can put together a 
> beefy enough hardware platform, what are the possibilities of 
> supporting
> 1 million concurrent connections with at least 2gb per second stateful

> packet filtering throughput?

I've heard of a lot bigger setups with multiple (IIRC 10) million
concurrent connection.

> Let's say I can get my hands on 10gb NICs - how fast can netfilter 
> push them?

I don't know, but I'd be interested in that too :)

^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2008-06-03 20:35 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2008-05-29 21:15 Number of concurrent connections? Greg Scott
2008-06-01 21:15 ` Patrick McHardy
  -- strict thread matches above, loose matches on Subject: below --
2008-06-03 20:35 Greg Scott

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.