Bill has answered this several times on this list; here's a link to
his most recent answer, which is consistent with those prior:

http://article.gmane.org/gmane.comp.security.firewalls.pfsense.support/11534

Nutshell: Each state takes 1-3k of RAM; ceteris peribus, a firewall
with 1GB of RAM should be able to safely handle ~768k states.  There
are numerous anecdotal references to people running 100k safely in
256M.  The 10k default is extremely conservative because of the wide
range of hardware pfSense runs on, namely the Soekris 4501 (64MB of
RAM max).

I have a system rather identical to yours and I had zero compunction
with raising the number of states to 1M.  You may also want to
consider setting "Advanced->Firewall optimization settings" to
'aggressive'.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to