From owner-freebsd-hackers@FreeBSD.ORG Sun Feb 26 13:56:36 2012 Return-Path: Delivered-To: hackers@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 280E51065679 for ; Sun, 26 Feb 2012 13:56:36 +0000 (UTC) (envelope-from rb@gid.co.uk) Received: from mx0.gid.co.uk (mx0.gid.co.uk [194.32.164.250]) by mx1.freebsd.org (Postfix) with ESMTP id A11C98FC14 for ; Sun, 26 Feb 2012 13:56:35 +0000 (UTC) Received: from rbpbp.gid.co.uk (80-46-130-69.static.dsl.as9105.com [80.46.130.69]) by mx0.gid.co.uk (8.14.2/8.14.2) with ESMTP id q1QDYT2R012964 for ; Sun, 26 Feb 2012 13:34:29 GMT (envelope-from rb@gid.co.uk) From: Bob Bishop Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: quoted-printable Date: Sun, 26 Feb 2012 13:34:23 +0000 Message-Id: To: hackers@freebsd.org Mime-Version: 1.0 (Apple Message framework v1084) X-Mailer: Apple Mail (2.1084) Cc: Subject: Blackhole routes vs firewall drop rules X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 26 Feb 2012 13:56:36 -0000 Hi, I'd like to hear from somebody who understands this stuff on the = relative merits of blackhole routes vs firewall drop rules for dealing = with packets from unwanted sources. I'm particularly interested in = efficiency and scalability. Thanks -- Bob Bishop rb@gid.co.uk