RES: Trouble with PF

David Verzolla dverzolla at fcl.com.br
Thu Sep 27 06:19:24 PDT 2007


Hi,
The limit of the states was reached.

"set limit { states 70000, frags 5000 }": solves my problem.

Have anyone that has a number higher then 100000?

Regards,

David



-----Mensagem original-----
De: owner-freebsd-pf at freebsd.org [mailto:owner-freebsd-pf at freebsd.org] Em nome de David Verzolla
Enviada em: quarta-feira, 26 de setembro de 2007 18:07
Para: freebsd-pf at freebsd.org
Assunto: Trouble with PF

Hi,

I'm working with two firewall box:
      - Dell poweredge 2950
            - First  network device BCE0
            - Second network device BCE1

      - HP ML350 G3
            - First network device BGE0
            - Second network device XL0

 

My FreeBSD Box is a: 6.2-STABLE.

I'm working with PF Firewall + PFSYNC + VLANS (3 vlans) + CARP.
All interfaces is cloned with CARP.

 

The problem is:

My network is slow, when I try to connect in a web server, or try pings from my Firewall to some machine located in DMZ (tests from DMZ -> Firewall Box have the same result), I get this trouble:

[David Verzolla] [sniped]

 

David Verzolla
Administrador de Redes
Fundação Cásper Líbero - FCLNet
Tel: +55 11 3170.5937

 

_______________________________________________
freebsd-pf at freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "freebsd-pf-unsubscribe at freebsd.org"


More information about the freebsd-pf mailing list