Re: Max number of states in pf? (100k? 200k? 1M?)

2005-09-24 Thread nate
Ted Unangst said: states are only allocated on demand. you could set the limit to a billion with no problem until you actually start using too many states. the limit is there to protect you from the firewall imploding. thanks for all the info, very useful! hopefully such info can get added

Re: Max number of states in pf? (100k? 200k? 1M?)

2005-09-23 Thread Ted Unangst
On Fri, 23 Sep 2005, nate wrote: ok thats the kind of info I wanted to hear, so kernel space can go up to ~300MB ? is this a tunable paramter anywhere or is it hard coded? it is actually 768MB on i386, but you can't use anywhere close to all of it for pf states. it is hard coded. is this

Re: Max number of states in pf? (100k? 200k? 1M?)

2005-09-22 Thread Ted Unangst
On Thu, 22 Sep 2005, nate wrote: Can I run with 200k states? 500k ? 1M states? 'top' reads 1833MB of memory is available. The docs say that 32MB is enough for ~30k states. so in theory memory wise at least this box should be able to handle at least 1.6M states. Not that I plan to keep that

Re: Max number of states in pf? (100k? 200k? 1M?)

2005-09-22 Thread Vinicius Pavanelli Vianna
Well, I'm running a similar setup, only Xeon 2.4 dual and running with 300k states, the info so far is: State Table Total Rate current entries89976 searches 2049646948754332.6/s inserts

Re: Max number of states in pf? (100k? 200k? 1M?)

2005-09-22 Thread Paul Connally
On 9/22/05, nate [EMAIL PROTECTED] wrote: Greetings I don't have a good way to test generating large numbers of states so I was wondering for a server with 2GB of memory which all it does is pf how many states can it handle? I started with the default of 10k, exausted that pretty quick,