tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: any interest in JIT for bpf and npf_ncode?



Darren Reed wrote:
> This is probably quite important for NPF as it moves NPF away from
> using the byte
> code method. This is important for anyone thinking of hardware
> devices using NPF
> as NPF seems dangerously close to what Checkpoint patented for
> Firewall-1 back
> in 1995.

It moves NPF to another parent minefield I think ;-)
The patent you mentioned is quite old. Hasn't it expired already?

> #IPFBPF=-DIPFILTER_BPF -I/usr/local/include
> #LIBBPF=-L/usr/local/lib -lpcap

This is interesting. Can this feature be used to test a firewall
throughput of interpreted vs compiled rules?

Thanks,
Alex


Home | Main Index | Thread Index | Old Index