tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: NPF tuning



On Sun, 15 Jan 2017 23:19:34 +0100, Manuel Bouyer wrote:
> 240 is still not that much. I used to have more than 2000 rules with
> ipf (before we replaced this box with a cisco).

It is even worse because npf has many restrictions compared to {i,}pf 
that lead to rule duplication.

hauke

-- 
Hauke Fath                        <hauke%Espresso.Rhein-Neckar.DE@localhost>
Ernst-Ludwig-Straße 15
64625 Bensheim
Germany


Home | Main Index | Thread Index | Old Index