Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 1 Jun 2000 07:33:20 +0200 (CEST)
From:      Luigi Rizzo <luigi@info.iet.unipi.it>
To:        George Michaelson <ggm@dstc.edu.au>
Cc:        freebsd-stable@FreeBSD.ORG
Subject:   Re: 'stalls' from ipfw-stateful box on network connects
Message-ID:  <200006010533.HAA64286@info.iet.unipi.it>
In-Reply-To: <200006010110.LAA04298@asuncion.dstc.edu.au> from George Michaelson at "Jun 1, 2000 11:10:16 am"

next in thread | previous in thread | raw e-mail | index | archive | help
> I am testing a FreeBSD-4.0 stable machine as a firewall, and
> have a reasonably complex ipfw ruleset that probably does
> invoke some stateful rules.

"probably" ???

> ssh and telnet sessions to this box appear to go into a stalled
> state, where there is a 30sec pause before they re-awake and
> respond to user input.
> 
> pinging the interface can wake them up again, which is why I
> suspect its something in the ipfw engine.

actually i'd rather suspect the interface!
more details maybe would help ?

	cheers
	luigi

> now clearly, for a box which is shuffling bits frequently this
> wouldn't be a problem because there'd be enough through-traffic
> to keep things ticking over.
> 
> am I mis-diagnosing things? is this also visible as a side-effect
> of apm or other stuff? 
> 
> what else apart from ipfw/state can make connects to a box hang
> if idle for more than a few minutes?
> 
> cheers
> 	-George
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-stable" in the body of the message
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200006010533.HAA64286>