Re: Iptables Forward Limit

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, 6 Oct 2005, ZeuS SN wrote:

There is any limit of rules that can be added to the forward table ? I can add 2048 rules, 10000000 rules ?

There is two limits:

- Memory usage. The more rules, the more memory is used for the rules. With too many rules you run out of memory.

- Speed. iptables with it's linear lookup is not very efficient at handling large rulesets. But nf-hipac is a good alternative in such situations. <url:http://www.hipac.org/>

Regards
Henrik


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux