Hello, All (NetMap dev. Team) !
We use netmap-ipfw server for traffic pre-processing before the main
filtering bridge (ordinary dummynet) and met the situation, that
netmap-ipfw dramatically degrades perfomance (point B below) from stable
work (point A below) after some actions with ruleset.
) to 330Mbytes/s (2.6Gbit/s), delay increases from 65ms to 250ms
and high percentage of drops.
Is it real limit of using netmap-ipfw ? We can give any additional info
if it will be usefull to expand limits of kipfw.
With regards and happy New Year !
Azamat B. Umurzakov
AkNet ISP
Hello, All!
In addition to previous info I can say, that netmap-ipfw takes about
95% in top -PHS, even if firewall is fully open:
60 root 1000 885M 342M CPU00 621:31 92.38% kipfw
when first rule is allow ip from any to any
May be it needs more RAM ? currently is 885M
Eugene,
sure, first we tried was a method with file.
But after first 2-3 rules (table 10 add xxx.xxx.xxx.xxx) it hangs and
we loose console interaction.
(the last FreeBSD-Stable 10.1)
It needs to open new console and kill a process ./ipfw
/usr/local/.../rules.txt
And ./ipfw table 10 list
Dear Luigi
Today I installed the last distribution of FreeBSD-Stable 10.1 and
took netmap-ipfw from your place by:
git clone https://code.google.com/p/netmap-ipfw/
(hope the latest version)
netmap compiled into kenel by
devicenetmap
Test computer i7-3770 (3.4Ghz), network card Intel
Julian,
I tested your method, result is negative, I see following:
First Console:
root@testbridge:/usr/local/netmap-ipfw/netmap-ipfw/ipfw # more
tab-cont.txt | ./ipfw /dev/stdin
connected to 127.0.0.1:
^C
Freeze. Have to interrupt by CTRL-C after 30 sec.
Second Console:
There is an error with this email account.
Please contact us.
http://itmediagate.com/contact.htm
___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to [EMAIL PROTECTED]