All of lore.kernel.org
 help / color / mirror / Atom feed
* Best qdisc for interfaces of a firewall?
@ 2014-11-09  0:57 Dennis Jacobfeuerborn
  2014-11-09 13:58 ` Dennis Jacobfeuerborn
                   ` (6 more replies)
  0 siblings, 7 replies; 8+ messages in thread
From: Dennis Jacobfeuerborn @ 2014-11-09  0:57 UTC (permalink / raw)
  To: lartc

Hi,
I just looked at the interfaces of our EdgeRouter Pro appliance that we
plan to replace (due to it apparently being overloaded at 150Mbit) and
see that they all have a qdisc of "noqueue".

What is the best qdisc to select for a pure firewall system? I can't
find any decent information about the various qdiscs and which to chose
in specific situations. For example there seems to exist a multiq
scheduler but I cannot find a lot of information about its
characteristics plus I already assigned the irq of each queue of the nic
to individual cores so I wonder if something like multiq is even necessary.

I'm also wondering about fairness and if that might be a legitimate
reason to chose somehting like noqueue so one flooding flow cannot hog
the queue and penalize all other flows.

Any ideas what would be a well performing yet fair choice here?

Regards,
  Dennis

^ permalink raw reply	[flat|nested] 8+ messages in thread

end of thread, other threads:[~2014-11-11  1:59 UTC | newest]

Thread overview: 8+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2014-11-09  0:57 Best qdisc for interfaces of a firewall? Dennis Jacobfeuerborn
2014-11-09 13:58 ` Dennis Jacobfeuerborn
2014-11-09 14:01 ` Alan Goodman
2014-11-09 15:01 ` josh Reynolds
2014-11-10 16:20 ` Rick Jones
2014-11-10 18:04 ` Dave Taht
2014-11-11  1:17 ` Dennis Jacobfeuerborn
2014-11-11  1:59 ` Stig Thormodsrud

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.