Several reasons: Having it in the kernel improves performance natd chokes on the latest windoze worms and I have implemented some DoS prevention/worm protection in ipnat but I'm seeing this memory leak without my improvements there at all. If it's in the kernel, ipnat is kept under control when natd would normally be sucking the CPU dry and preventing things like remote logins, very slugish updates, etc... and others I won't go into at the moment. vec ----- Original Message ----- From: "marcos" <marcos_at_thepacific.net> To: "Vector" <freebsd_at_itpsg.com> Sent: Thursday, October 09, 2003 12:02 AM Subject: Re: ipnat memory leak? > Why I want to do that?? > natd work with IPFW and so much better than ipfilter > ----- Original Message ----- > From: "Vector" <freebsd_at_itpsg.com> > To: <current_at_freebsd.org> > Sent: Thursday, October 09, 2003 5:51 PM > Subject: ipnat memory leak? > > > > I was using ipfw and natd but I wanted to move nat into the kernel so I > > recompiled with ipfilter and ipnat. Now, after terminating natd, and > > setting up ipnat rules in /etc/ipnat.rules, I see memory increase at a > rate > > of just under 1MB per minutes. Has anyone else seen a memory leak in > ipnat > > or ipfilter? > > > > vec > > > > > > _______________________________________________ > > freebsd-current_at_freebsd.org mailing list > > http://lists.freebsd.org/mailman/listinfo/freebsd-current > > To unsubscribe, send any mail to "freebsd-current-unsubscribe_at_freebsd.org" > > > >Received on Wed Oct 08 2003 - 21:57:21 UTC
This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:37:24 UTC