Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 1 Apr 2002 12:19:16 -0800
From:      Luigi Rizzo <rizzo@icir.org>
To:        Peter Brezny <peter@skyrunner.net>
Cc:        Joost Bekkers <joost@bps.jodocus.org>, freebsd-net@FreeBSD.ORG
Subject:   Re: NATD theoretical max and tuning question
Message-ID:  <20020401121916.B76235@iguana.icir.org>
In-Reply-To: <NEBBIGLHNDFEJMMIEGOOAEEHEPAA.peter@skyrunner.net>
References:  <20020401012912.B69717@iguana.icir.org> <NEBBIGLHNDFEJMMIEGOOAEEHEPAA.peter@skyrunner.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, Apr 01, 2002 at 11:00:20AM -0500, Peter Brezny wrote:
> 
> Thank everyone for the background.
> 
> So as far as load on natd is concerned, which is better:

no idea. As long as you keep the public ip of the NAT host itself
distinct from the public IP of the natted hosts, there should
be any diffefence (the former distinction is to avoid passing to
natd traffic that has no need to be handled by the daemon).

	cheers
	luigi

> All private networks translated through one public ip address (about 5 class
> c networks total)
> 
> or
> 
> A separate public ip for each private network to be translated through.
> 
> Thanks again for your help.
> 
> Peter Brezny
> Skyrunner.net
> 
> 
> 
> -----Original Message-----
> From: Luigi Rizzo [mailto:rizzo@icir.org]
> Sent: Monday, April 01, 2002 4:29 AM
> To: Joost Bekkers
> Cc: Peter Brezny; freebsd-net@FreeBSD.ORG
> Subject: Re: NATD theoretical max and tuning question
> 
> 
> Actually, following other reports on natd performance trashing under
> load and with time, I am under the impression that the library used
> by natd (libalias ?) might use some heavyweight data structure
> (such as linear lists, or hash tables which saturate too early)
> to lookup sessions.
> 
> The bug mentioned below is only partly related -- yes it prevents
> natd from doing busy-waiting on an interface, but that is only
> part of the story.
> 
> 	cheers
> 	luigi
> 
> On Mon, Apr 01, 2002 at 11:04:59AM +0200, Joost Bekkers wrote:
> > On Sun, Mar 31, 2002 at 08:06:16PM -0500, Peter Brezny wrote:
> > > I've got a system acting as a router for about 1000 users behind various
> > > private networks who are currently all routed through a pII 400 with
> 512M
> > > ram.
> > >
> > > Currently all of these private networks are translated through one
> public
> > > IP.
> > >
> > > Frequently the natd process will use more than 50% of the cpu.
> > >
> >
> > This is due to a bug in natd which was fixed in 4.5-STABLE
> >
> http://docs.freebsd.org/cgi/getmsg.cgi?fetch=2878659+0+archive/2002/freebsd-
> questions/20020324.freebsd-questions
> >
> > I personally noticed the same thing, but it stopped after I
> > upgraded natd
> >
> > Greetz Joost
> > joost@jodocus.org
> >
> > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > with "unsubscribe freebsd-net" in the body of the message
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-net" in the body of the message

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020401121916.B76235>