Firewall Wizards mailing list archives

Re: Firewall performance


From: Mike Shaver <shaver () mozilla org>
Date: Tue, 29 Jun 1999 10:56:22 -0400

Darren Reed wrote:
In some email I received from David C Niemi, sie wrote:
and there is a special case to do
direct NIC-to-NIC transfers with certain hardware to cut out one of those
DMAs (if I understand NET_FASTROUTE option correctly).

So how do you firewall packets which go from one NIC to the other, directly ?

If you turn on firewalling, you don't get fastroute:

CONFIG_NET_FASTROUTE
  Saying Y here enables direct NIC-to-NIC (NIC = Network Interface
  Card) data transfers, which is fast.

    *** This option is NOT COMPATIBLE with several important ***
    *** networking options: especially CONFIG*FIREWALL.      ***

Mike

-- 
1673974.39 1558509.83



Current thread: