Re: Pf questions for larger implementation

2006-02-23 Thread Diana Eichert
On Thu, 23 Feb 2006, Ryan McBride wrote: SNIP In my opinion if you're talking about NATing 750 Windows boxes doing regular Windows-type things, you're going to want to at least at crank the limits on states and turn on adaptive timeouts; I wouldn't go any further than that unless you run into

Pf questions for larger implementation

2006-02-22 Thread Steve D.
Hi, I'm setting up a gateway (1.7 Ghz machine with 1 Gig of ram) for 700+ users using pf with NAT and BINAT's (90% NAT).I would like to know if anyone has any recommendations on tweaking the runtime options in PF. This box will pretty much just be handling the natting with a bare

Re: Pf questions for larger implementation

2006-02-22 Thread knitti
On 2/23/06, Steve D. [EMAIL PROTECTED] wrote: I'm setting up a gateway (1.7 Ghz machine with 1 Gig of ram) for 700+ users using pf with NAT and BINAT's (90% NAT).I would like to know if anyone has any recommendations on tweaking the runtime options in PF. This box will pretty much just be

Re: Pf questions for larger implementation

2006-02-22 Thread Nick Holland
Steve D. wrote: Hi, I'm setting up a gateway (1.7 Ghz machine with 1 Gig of ram) for 700+ users using pf with NAT and BINAT's (90% NAT).I would like to know if anyone has any recommendations on tweaking the runtime options in PF. This box will pretty much just be handling the natting

Re: Pf questions for larger implementation

2006-02-22 Thread Steve D.
Nick Holland wrote: Steve D. wrote: Hi, I'm setting up a gateway (1.7 Ghz machine with 1 Gig of ram) for 700+ users using pf with NAT and BINAT's (90% NAT).I would like to know if anyone has any recommendations on tweaking the runtime options in PF. This box will pretty much just be

Re: Pf questions for larger implementation

2006-02-22 Thread Ryan McBride
On Wed, Feb 22, 2006 at 08:39:36PM -0500, Nick Holland wrote: Steve D. wrote: Hi, I'm setting up a gateway (1.7 Ghz machine with 1 Gig of ram) for 700+ users using pf with NAT and BINAT's (90% NAT).I would like to know if anyone has any recommendations on tweaking the runtime options