From owner-freebsd-questions@FreeBSD.ORG Sun Mar 20 19:36:33 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9503516A4CE for ; Sun, 20 Mar 2005 19:36:33 +0000 (GMT) Received: from rproxy.gmail.com (rproxy.gmail.com [64.233.170.193]) by mx1.FreeBSD.org (Postfix) with ESMTP id 1BD1643D54 for ; Sun, 20 Mar 2005 19:36:33 +0000 (GMT) (envelope-from tomasq@gmail.com) Received: by rproxy.gmail.com with SMTP id a41so753328rng for ; Sun, 20 Mar 2005 11:36:32 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:mime-version:content-type:content-transfer-encoding; b=SByP/yW2mO2SI8R86VkuZKg1JyKAZpM5V90NQgXNI6QPXWPx2wYFHi03Y8n93Xo+pjE6wYuq+OGTlreaZPWWvnJoIUSBRmkC1JACK4Ms0Dh7rg7QvGPVBkMPgU4U7mUe6bpTzGag4u7YyG+Zq4tq0ZoIOtZEnQhvqAJ7ckrbfQ4= Received: by 10.38.76.23 with SMTP id y23mr1202541rna; Sun, 20 Mar 2005 11:36:32 -0800 (PST) Received: by 10.38.71.19 with HTTP; Sun, 20 Mar 2005 11:36:31 -0800 (PST) Message-ID: <9e46c99e0503201136527a92a2@mail.gmail.com> Date: Sun, 20 Mar 2005 14:36:31 -0500 From: Tomas Quintero To: freebsd-questions@freebsd.org Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Subject: Slow Performance with OpenBSD's PF on 5.3-RELEASE X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Tomas Quintero List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 20 Mar 2005 19:36:33 -0000 I recently setup a box with 5.3 release and enabled PF in order to do NAT and eventually firewalling and bandwidth control when I become more acustom to the workings of PF. Regardless of which however, I'm having tremendous speed issues with the box currently. Here is my pf.conf: ext_if="rl1" int_if="xl0" int_net="192.168.1.0/24" nat on $ext_if from $int_net to any -> $ext_if pass in all keep state pass out all keep state Here is my rc.conf: defaultrouter="63.135.xxx.xxx" gateway_enable="YES" hostname="ORCA.****" ifconfig_rl1="inet 63.135.xxx.xxx netmask 255.255.255.240" ifconfig_xl0="inet 192.168.1.1 netmask 255.255.255.0" linux_enable="YES" sshd_enable="YES" usbd_enable="YES" pf_enable="yes" pf_rules="/etc/pfrules.conf" pf_flags="" pflog_enable="YES" pflog_logfile="/var/log/pflog" pflog_flags="" -- -Tomas Quintero