high cpu usage on natd / dhcpd

Eggert, Lars lars at netapp.com
Thu Feb 7 08:09:03 UTC 2013


On Jan 31, 2013, at 16:03, Matthew Luckie <mjl at luckie.org.nz> wrote:
> 
> 00510 allow ip from me to not me out via em1
> 00550 divert 8668 ip from any to any via em1
> 
> Rule 510 fixes it.

Yep, it does. Can I ask someone to commit this to rc.firewall?

(And I wonder if the rules for the ipfw kernel firewall need a similar addition, because the system locks up under heavy network load if I use that instead of natd.)

Lars



More information about the freebsd-net mailing list