* System Load
@ 2003-11-14 9:38 bikrant
0 siblings, 0 replies; 5+ messages in thread
From: bikrant @ 2003-11-14 9:38 UTC (permalink / raw)
To: netfilter; +Cc: lartc
Hi,
Is it possible to know how much system resources (cpu/memory load)
that the
netfilter module(s) is using? We are using HTB to shape our client traffic
and there are 4 iptables rule for each client in the mangle table. I think it
will be helpful to gather such data and graph it using mrtg.
I'm really sorry if someone has already asked about it.
Thanks a lot.
with regards,
Rohit Nepali
^ permalink raw reply [flat|nested] 5+ messages in thread* System Load
@ 2003-11-14 9:34 Rohit
2003-11-17 9:16 ` Ray Leach
0 siblings, 1 reply; 5+ messages in thread
From: Rohit @ 2003-11-14 9:34 UTC (permalink / raw)
To: netfilter; +Cc: lartc
Hi,
Is it possible to know how much system resources (cpu/memory load) that the
netfilter module(s) is using? We are using HTB to shape our client traffic
and there are 4 iptables rule for each client in the mangle table. I think it
will be helpful to gather such data and graph it using mrtg.
I'm really sorry if someone has already asked about it.
Thanks a lot.
with regards,
Rohit Nepali
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: System Load
2003-11-14 9:34 Rohit
@ 2003-11-17 9:16 ` Ray Leach
2003-11-17 11:54 ` bikrant
0 siblings, 1 reply; 5+ messages in thread
From: Ray Leach @ 2003-11-17 9:16 UTC (permalink / raw)
To: Netfilter Mailing List
[-- Attachment #1: Type: text/plain, Size: 842 bytes --]
On Fri, 2003-11-14 at 11:34, Rohit wrote:
> Hi,
> Is it possible to know how much system resources (cpu/memory load) that the
> netfilter module(s) is using? We are using HTB to shape our client traffic
> and there are 4 iptables rule for each client in the mangle table. I think it
> will be helpful to gather such data and graph it using mrtg.
>
Just remember, iptables is only used to mark the traffic. tc is used to
classify and shape the traffic.
> I'm really sorry if someone has already asked about it.
> Thanks a lot.
>
> with regards,
> Rohit Nepali
--
--
Raymond Leach <raymondl@knowledgefactory.co.za>
Network Support Specialist
http://www.knowledgefactory.co.za
"lynx -source http://www.rchq.co.za/raymondl.asc | gpg --import"
Key fingerprint = 7209 A695 9EE0 E971 A9AD 00EE 8757 EE47 F06F FB28
--
[-- Attachment #2: This is a digitally signed message part --]
[-- Type: application/pgp-signature, Size: 198 bytes --]
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: System Load
2003-11-17 9:16 ` Ray Leach
@ 2003-11-17 11:54 ` bikrant
2003-11-17 12:04 ` Antony Stone
0 siblings, 1 reply; 5+ messages in thread
From: bikrant @ 2003-11-17 11:54 UTC (permalink / raw)
To: Ray Leach; +Cc: netfilter
On Monday 17 November 2003 15:01, Ray Leach wrote:
> On Fri, 2003-11-14 at 11:34, Rohit wrote:
> > Hi,
> > Is it possible to know how much system resources (cpu/memory load) that
> > the netfilter module(s) is using? We are using HTB to shape our client
> > traffic and there are 4 iptables rule for each client in the mangle
> > table. I think it will be helpful to gather such data and graph it using
> > mrtg.
>
> Just remember, iptables is only used to mark the traffic. tc is used to
> classify and shape the traffic.
Yeah you are right. But iptables must be using some resources(like cpu time
etc) to mark the each and every packet. We have around 2-3 Mbps traffice
flowing at each interface and I think that does consume some system
resources. That is what I want to know about.
I guess it sound very foolish now :)
regds,
Rohit
>
> > I'm really sorry if someone has already asked about it.
> > Thanks a lot.
> >
> > with regards,
> > Rohit Nepali
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: System Load
2003-11-17 11:54 ` bikrant
@ 2003-11-17 12:04 ` Antony Stone
0 siblings, 0 replies; 5+ messages in thread
From: Antony Stone @ 2003-11-17 12:04 UTC (permalink / raw)
To: netfilter
On Monday 17 November 2003 11:54 am, bikrant@wlink.com.np wrote:
> On Monday 17 November 2003 15:01, Ray Leach wrote:
> > On Fri, 2003-11-14 at 11:34, Rohit wrote:
> > > Hi,
> > > Is it possible to know how much system resources (cpu/memory load)
> > > that the netfilter module(s) is using? We are using HTB to shape our
> > > client traffic and there are 4 iptables rule for each client in the
> > > mangle table. I think it will be helpful to gather such data and graph
> > > it using mrtg.
> >
> > Just remember, iptables is only used to mark the traffic. tc is used to
> > classify and shape the traffic.
>
> Yeah you are right. But iptables must be using some resources(like cpu time
> etc) to mark the each and every packet. We have around 2-3 Mbps traffice
> flowing at each interface and I think that does consume some system
> resources. That is what I want to know about.
Presumably your traffic is not continuous, 24 hours a day, so here's a
suggestion:
Measure your system load when the traffic is at its lowest (middle of the
night perhaps?), and at its highest, then compare the two.
My guess is that with 2-3Mbits/sec you will hardly notice a thing. Unless
your netfilter is running on a 486 I don't think you'll be able to measure it
(and even then I think it would do a perfectly good job).
Antony.
--
Documentation is like sex:
when it's good, it's very very good;
when it's bad, it's still better than nothing.
Please reply to the list;
please don't CC me.
^ permalink raw reply [flat|nested] 5+ messages in thread
end of thread, other threads:[~2003-11-17 12:04 UTC | newest]
Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-11-14 9:38 System Load bikrant
-- strict thread matches above, loose matches on Subject: below --
2003-11-14 9:34 Rohit
2003-11-17 9:16 ` Ray Leach
2003-11-17 11:54 ` bikrant
2003-11-17 12:04 ` Antony Stone
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox