pf Performance question

Doug Hardie bc979 at lafn.org
Sat Apr 17 01:50:53 UTC 2021


I have several devices that emit udp packets to a specific port every second.  Unfortunately, they cannot terminate that.  However, on my systems they show up in pftop and netstat.  Currently I have them ignored in pf.  They create state entries, but there is nothing listening to that port.  Will it use less CPU if I put a pf drop statement for that port?

-- Doug



More information about the freebsd-questions mailing list