Re: Optimizing CentOS for gigabit firewall

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



Les Mikesell wrote:
> Chan Chung Hang Christopher wrote:
>> That part about high-core speed for OpenBSD pf is definitely on. The 
>> multi-processor part...not too sure. Maybe with NUMA systems like what 
>> you get on AMD Opteron platforms.
>>
> 
> Don't both iptables and pf bypass the filters for established TCP connections 
> (making the filtering speed only rarely relevant)?
> 

Yeah, IF you set up the rules right. On that score, i think openbsd has 
a certain order iirc so you cannot go wrong there...but with iptables 
and netfilter...heh.
_______________________________________________
CentOS mailing list
CentOS@xxxxxxxxxx
http://lists.centos.org/mailman/listinfo/centos

[Index of Archives]     [CentOS]     [CentOS Announce]     [CentOS Development]     [CentOS ARM Devel]     [CentOS Docs]     [CentOS Virtualization]     [Carrier Grade Linux]     [Linux Media]     [Asterisk]     [DCCP]     [Netdev]     [Xorg]     [Linux USB]
  Powered by Linux