On 2008-05-08, Steve Johnson <[EMAIL PROTECTED]> wrote: > Is the congestion issue that I'm getting considered "normal" under that > type of traffic and with the present hardware? Are there any other > settings that I should look into tweaking?
>> CPU states: 0.2% user, 0.0% nice, 1.9% system, 38.1% interrupt, 59.8% idle cpu% in interrupt (which includes PF processing) will almost certainly spike higher than this instantaneous reading at times, leading to congestion. >> scrub all random-id fragment reassemble do you need to scrub/random-id _all_ of the traffic, in+out, on all interfaces? you're natting on the network Henning suggested you 'set skip' on aren't you... if you can live with that breaking to test, try the 'set skip' anyway and see if it helps enough to be worth working out something else for the nat. btw personally I'd rather have all the information in the list post than have to fetch it by http, I expect it's probably the same for others..