Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 19 Nov 2001 11:10:30 -0800 (PST)
From:      Julian Elischer <julian@elischer.org>
To:        Brendan Kosowski <brendan@bmk.com.au>
Cc:        FreeBSD Networking <freebsd-net@freebsd.org>
Subject:   Re: Services very slow on Firewall/nat boxes.
Message-ID:  <Pine.BSF.4.21.0111191106260.28603-100000@InterJet.elischer.org>
In-Reply-To: <Pine.BSF.3.96.1011119202156.39549A-100000@garfield.bmk.com.au>

next in thread | previous in thread | raw e-mail | index | archive | help
If you have IPdivert, does this mean that you have natd running?

If so, then
probably the initiation of a new session is paging in pages of the natd
that were paged out. (and allocating new data structures.



On Mon, 19 Nov 2001, Brendan Kosowski wrote:

> 
> I am running natd on a FreeBSD box with IPFIREWALL and IPDIVERT added to
> the kernel. Firewall type is open.
> 
> I have noticed that when you run a server (eg. sendmail, named, pop3 etc.)
> on the above, initial connection to the service is very slow (ie. between
> 5 and 60 seconds ), however once connection has been established data
> transfer becomes very fast (as per normal).
> 
> If I disable natd and replace kernel with original, initial connection to
> services is very fast.
> 
> This box is on a network with very little traffic.
> 
> I would greatly appreciate any help on speeding up initial connection to
> services.
> 
> 
> Regards, Brendan Kosowski
> 
> -------------------------
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-net" in the body of the message
> 


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0111191106260.28603-100000>