[lvs-users] no VIP up on real server? was: Re: arp problem with 2.6.X red hat kernels?

Joseph Mack NA3T jmack at wm7d.net
Sun Oct 7 15:01:46 BST 2007


On Sun, 7 Oct 2007, ipvs user wrote:

> but I coulda swore I read something to that effect, 
> because I remember thinking "Note to self: don't use 
> iptables on high connection rate systems".

There's a paper by Ratz, referred to in the HOWTO, where he 
finds that if the packets have to pass through more than 500 
rules, then throughput suffers, but below that, there is no 
decrease. Most of the problems people have with iptables 
rules are using conntrack, which does bring the network to a 
crawl. (I can't imagine myself writing a stack of iptables 
rules 500 deep and getting it right.)

Joe

-- 
Joseph Mack NA3T EME(B,D), FM05lw North Carolina
jmack (at) wm7d (dot) net - azimuthal equidistant map
generator at http://www.wm7d.net/azproj.shtml
Homepage http://www.austintek.com/ It's GNU/Linux!


Search lvs-users Archives
Limit search to: Subject & Body Subject Author
Sort by: Reverse Sort

More information about the lvs-users mailing list