Re: Performance/lockup issues with FreeBSD as a router

From: Mathieu CHATEAU (gollum123_at_free.fr)
Date: 05/26/05

  • Next message: Benjamin Krueger: "Re: Performance/lockup issues with FreeBSD as a router"
    Date: Thu, 26 May 2005 19:58:52 +0200
    To: Peter Kieser <pfak@telus.net>
    
    

    Hello Peter,

    in your kernel, try :

    options VM_KMEM_SIZE_SCALE
    options DEVICE_POLLING
    options HZ=1000

    You say that you do not have any firewall,
    so why do you use:
    net.inet.ip.fw.dyn_udp_lifetime=10
    net.inet.ip.fw.dyn_buckets=1024

    you may add:
    kern.polling.enable=1
    kern.polling.user_frac=50

    best regards,
    Mathieu CHATEAU

    Thursday, May 26, 2005, 7:47:48 PM, you wrote:

    PK> Hello guys,

    PK> I'm not quite sure if this is the right list to address this to, as it's partly
    PK> a performance problem and partly otherwise.

    PK> I have a FreeBSD machine acting as a router (doing approx. 15-25Mbit/s of
    PK> traffic (lot's of small packets, about 45,000 pps)), however I'm currently
    PK> running into issues where one, or both of the NICs will stop transmitting
    PK> traffic. When I go onto the machine, and try to ping something I get "No buffer
    PK> space available"

    PK> The nics are if_dc, this is a stock FreeBSD 5.4-RELEASE installation (no
    PK> firewall or anything):

    PK> Here's my /etc/sysctl.conf:

    PK> net.inet.ip.rtexpire=1800
    PK> net.inet.ip.rtminexpire=1800
    PK> kern.maxfiles=32768
    PK> kern.maxfilesperproc=32768
    PK> kern.ipc.somaxconn=32767
    PK> net.inet.tcp.sendspace=256000
    PK> net.inet.tcp.recvspace=256000
    PK> kern.ipc.maxsockbuf=2097152
    PK> net.inet.ip.fastforwarding=1
    PK> net.inet.tcp.rfc1323=1
    PK> net.link.ether.inet.max_age=600
    PK> net.inet.tcp.msl=7500
    PK> net.inet.ip.fw.dyn_udp_lifetime=10
    PK> net.inet.ip.fw.dyn_buckets=1024

    PK> And here's my /boot/loader.conf:

    PK> kern.ipc.maxsockets="163840"
    PK> kern.maxusers="2048"

    PK> Is there anythign I'm overlooking that would be causing the machine to lockup
    PK> like this?

    PK> --Peter

    PK> _______________________________________________
    PK> freebsd-performance@freebsd.org mailing list
    PK> http://lists.freebsd.org/mailman/listinfo/freebsd-performance
    PK> To unsubscribe, send any mail to
    PK> "freebsd-performance-unsubscribe@freebsd.org"

    -- 
    Best regards,
     Mathieu                            mailto:gollum123@free.fr
    _______________________________________________
    freebsd-performance@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-performance
    To unsubscribe, send any mail to "freebsd-performance-unsubscribe@freebsd.org"
    

  • Next message: Benjamin Krueger: "Re: Performance/lockup issues with FreeBSD as a router"

    Relevant Pages

    • Re: CEICW fails at firewall config
      ... Do you or do you not have ISA 2000 or ISA 2004 installed on the SBS server? ... Do you have 2 NICs in the SBS? ... CEICW fails on firewall configuration every time. ... >>> Call to Creating the protected networks access rule returned ok. ...
      (microsoft.public.windows.server.sbs)
    • Website setup questions.
      ... Create firewall rule to direct HTTP port 80 to the SBS External NIC ... Create firewall rule to point DNS port 53 to the SBS External NIC ... NICS to get this request to not timeout or be refused. ...
      (microsoft.public.windows.server.sbs)
    • Re: SBS 1002 Premium R2 Mangling Port Issues
      ... For solutions like forefront, I am unsure why MS is not using the Windows ... When we use the term "hardware" firewall, ... The direction now is hardware firewall in front of SBS. ... NIC or 2 NICs) did you finally end up with? ...
      (microsoft.public.windows.server.sbs)
    • Re: Firewall issues on dual NIC server
      ... The firewall in Windows Vista and Server 2008 applies a single policy to the entire machine. ... two NICs, because they are both consider a LAN. ... I had it running really well on the LAN. ...
      (microsoft.public.security)
    • Re: best network setup?
      ... An appliance based firewall is a separate dedicated device designed to do ... You can be sure that any changes to your server will not affect the ... If the SBS server is down for whatever reason all clients can still get ... SBS doesn't rely on two NICs to provide any services other than the ...
      (microsoft.public.windows.server.sbs)