lvs-users
|
To: | "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx> |
---|---|
Subject: | Re: [lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels? |
From: | Joseph Mack NA3T <jmack@xxxxxxxx> |
Date: | Sun, 7 Oct 2007 07:01:46 -0700 (PDT) |
On Sun, 7 Oct 2007, ipvs user wrote: > but I coulda swore I read something to that effect, > because I remember thinking "Note to self: don't use > iptables on high connection rate systems". There's a paper by Ratz, referred to in the HOWTO, where he finds that if the packets have to pass through more than 500 rules, then throughput suffers, but below that, there is no decrease. Most of the problems people have with iptables rules are using conntrack, which does bring the network to a crawl. (I can't imagine myself writing a stack of iptables rules 500 deep and getting it right.) Joe -- Joseph Mack NA3T EME(B,D), FM05lw North Carolina jmack (at) wm7d (dot) net - azimuthal equidistant map generator at http://www.wm7d.net/azproj.shtml Homepage http://www.austintek.com/ It's GNU/Linux! |
<Prev in Thread] | Current Thread | [Next in Thread> |
---|---|---|
|
Previous by Date: | Re: [lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels?, ipvs user |
---|---|
Next by Date: | Re: [lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels?, Joseph Mack NA3T |
Previous by Thread: | Re: [lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels?, ipvs user |
Next by Thread: | Re: [lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels?, Joseph Mack NA3T |
Indexes: | [Date] [Thread] [Top] [All Lists] |