On 2008-05-08, Steve Johnson <[EMAIL PROTECTED]> wrote:
> Is the congestion issue that I'm getting considered "normal" under that
> type of traffic and with the present hardware? Are there any other
> settings that I should look into tweaking?

>> CPU states:  0.2% user,  0.0% nice,  1.9% system, 38.1% interrupt, 59.8% idle

cpu% in interrupt (which includes PF processing) will almost certainly 
spike higher than this instantaneous reading at times, leading to congestion.

>> scrub all random-id fragment reassemble

do you need to scrub/random-id _all_ of the traffic, in+out, on all
interfaces?

you're natting on the network Henning suggested you 'set skip' on
aren't you... if you can live with that breaking to test, try the 'set
skip' anyway and see if it helps enough to be worth working out
something else for the nat.

btw personally I'd rather have all the information in the list post
than have to fetch it by http, I expect it's probably the same for others..

Reply via email to