Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

[Bug 211380] Add rule to avoid packets that natd divert doesn't need to see

0 views
Skip to first unread message

bugzilla...@freebsd.org

unread,
Jul 26, 2016, 7:55:26 AM7/26/16
to
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211380

Bug ID: 211380
Summary: Add rule to avoid packets that natd divert doesn't
need to see
Product: Documentation
Version: Latest
Hardware: Any
OS: Any
Status: New
Severity: Affects Only Me
Priority: ---
Component: Documentation
Assignee: freeb...@FreeBSD.org
Reporter: ahi...@p-o.co.uk

Created attachment 172993
--> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=172993&action=edit
Patch to add firewall rule to example

natd can have higher utilisation when it sees unnecessary packets.

Adding a rule to send packets out that natd doesn't need to reduces CPU cycles.

For background see
https://lists.freebsd.org/pipermail/freebsd-ipfw/2013-February/005306.html

My testing and implementation reduced ~50% wcpu to < 1%

--
You are receiving this mail because:
You are the assignee for the bug.
_______________________________________________
freeb...@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-doc
To unsubscribe, send any mail to "freebsd-doc...@freebsd.org"

bugzilla...@freebsd.org

unread,
Jul 26, 2016, 7:57:42 AM7/26/16
to

bugzilla...@freebsd.org

unread,
Aug 2, 2016, 5:05:37 PM8/2/16
to
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=211380

Mark Linimon <lin...@FreeBSD.org> changed:

What |Removed |Added
----------------------------------------------------------------------------
Summary|Add rule to avoid packets |[handbook] Add rule to
|that natd divert doesn't |avoid packets that natd
|need to see |divert doesn't need to see
Keywords| |patch
0 new messages