Linux Netfilter discussions
 help / color / mirror / Atom feed
From: "Leonardo Rodrigues Magalh?es" <leolistas@solutti.com.br>
To: zhaohui_scu@sohu.com, netfilter@lists.netfilter.org
Subject: Re: how can I improve the throughput of linux firewall that use the netfilter + iptable
Date: Fri, 24 Oct 2003 11:33:01 -0300	[thread overview]
Message-ID: <000d01c39a3b$bb997450$8b00000a@casa> (raw)
In-Reply-To: 6257303.1067001733624.JavaMail.postfix@mx17.mail.sohu.com


    Number os PCs is not the most important information. We need you to give
us some more data about the firewall you're pretending to build, like:

1) internet connection speed (256k DSL, 1.5 T1, more?? )
2) complexity of your rules (simple rules, very complex rules)
3) any other information you can share with us .....


    But I can guarantee you that netfilter can get you VERY good throughput
**IF** you think before making the rules. We've seen lots of people
complaining about bad throughputs but almost all the times the problem is
related to their rules, build in a not-smart way, and not related to
iptables/netfilter itself.

    Question: what's smartbits ????? I've never heard about it .....


    Sincerily,
    Leonardo Rodrigues

----- Original Message ----- 
From: <zhaohui_scu@sohu.com>
To: <netfilter@lists.netfilter.org>
Sent: Friday, October 24, 2003 10:22 AM
Subject: how can I improve the throughput of linux firewall that use the
netfilter + iptable


>
> I want to use the netfilter+iptables for my company's local_net.
>
> but I have read the following words on some webpage
> "we use linux as our router. i just tested the performance of the router
with smartbits, and i found that the throughput of 64byte .and the result is
not good"
>
> we have not the smartbits
>
> but we want to use "iptables + netfilter + a normal pc with two eth " for
our company
> there are about 1,000 PCs in the local_net
>
> what can I do to improve it



  reply	other threads:[~2003-10-24 14:33 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-10-24 13:22 how can I improve the throughput of linux firewall that use the netfilter + iptable zhaohui_scu
2003-10-24 14:33 ` Leonardo Rodrigues Magalh?es [this message]
2003-10-24 17:50   ` SBlaze
2003-10-26 14:27 ` Ted Kaczmarek

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to='000d01c39a3b$bb997450$8b00000a@casa' \
    --to=leolistas@solutti.com.br \
    --cc=netfilter@lists.netfilter.org \
    --cc=zhaohui_scu@sohu.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox