Re: [fw-wiz] RE: Firewall Utilization

From: Balazs Scheidler (bazsiat_private)
Date: Wed Oct 16 2002 - 11:45:08 PDT

  • Next message: Philip J. Koenig: "Re: [fw-wiz] CERT vulnerability note VU# 539363"

    On Wed, Oct 16, 2002 at 06:59:42PM +0200, Achim Dreyer wrote:
    > On Wed, 16 Oct 2002, Zill, Greg wrote:
    > > Date: Wed, 16 Oct 2002 09:55:42 -0500
    > > From: "Zill, Greg" <Greg.Zillat_private>
    > > To: firewall-wizardsat_private
    > > Subject: [fw-wiz] RE: Firewall Utilization
    > > 
    > > Sun e250 with Solaris 2.7
    > > Raptor 6.5.3sp1
    > > dual 368 CPU, 512 RAM, 1024 swap, 18Gb SCSI
    > > two bonded t-1 lines
    > > 
    > > uptime common: 0.05 0.05 0.05
    > .. these are usually load averages for user space processes. The load 
    > average can at best be an indicator that something is terribly wrong.
    > You should never trust them.
    > All major firewall implementations work at kernel level, so these are not 
    > accounted for with the load level!  If you want to see what the kernel is 
    > doing go for kernel optimisation tools..
    Raptor is an application level proxy firewall, which run in userspace. So
    load avg using Raptor _IS_ impportant.
    All major proxy firewall implementations run in userspace.
    ps: sigh, if people knew the difference between firewalls and firewalls...
    we'd live in a less dangerous world.
    PGP info: KeyID 9AF8D0A9 Fingerprint CD27 CFB0 802C 0944 9CFD 804E C82C 8EB1
    firewall-wizards mailing list

    This archive was generated by hypermail 2b30 : Wed Oct 16 2002 - 12:07:18 PDT