Re: firewall is too slow

2007-10-16 Thread Florin Andrei
Florin Andrei wrote: Seems like a bad network driver, because of the amount of interrupts, but I'm not sure. Any suggestion is welcome. OpenBSD 4.2 solved these problems. Throughput is now 1Gbit / sec, my UDP DDoS simulation does not affect the firewall at all. It's actually better than Lin

Re: firewall is too slow

2007-10-15 Thread Florin Andrei
pf user wrote: Could you post your iptables rules and your pf.conf? Did you use "rdr pass..." for the http access ? Actually, for HTTP I did 1:1 NAT for each server, created IP aliases on the outside interface of the firewall, and then just allowed traffic in to the aliases. -- Florin Andre

Re: firewall is too slow

2007-10-12 Thread pf user
Could you post your iptables rules and your pf.conf? Did you use "rdr pass..." for the http access ? Florin Andrei wrote: (originally posted on openbsd-misc, but then I figured this list might be a better place for this question) OS: OpenBSD 4.1 Hardware: Tyan Transport GT24, 2 x AMD64 dual c

Re: firewall is too slow

2007-10-10 Thread Can Erkin Acar
On Mon, Oct 08, 2007 at 11:50:14AM -0700, Florin Andrei wrote: > (originally posted on openbsd-misc, but then I figured this list might > be a better place for this question) > [snip] > > Seems like a bad network driver, because of the amount of interrupts, > but I'm not sure. Any suggestion is