Hi all, http://www.hipac.org/index.htm I have just discovered this great project. It seems it surpasses standard netfilter in performance. The documentation states they are more or less compatible with standard netfilter, but anybody has tested if it is compatible with shorewall? Tom, have you? Regards -- Jaime Nebrera - jnebrera@eneotecnologia.com Consultor TI - ENEO Tecnologia SL Telf.- 95 455 40 62 - 619 04 55 18
Jaime Nebrera wrote:> > The documentation states they are more or less compatible with > standard netfilter, but anybody has tested if it is compatible with > shorewall? Tom, have you?No. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
> > The documentation states they are more or less compatible with > > standard netfilter, but anybody has tested if it is compatible with > > shorewall? Tom, have you? > > No.Hi Tom, No, is not compatible or No, I have not tested it :))) If you say you have not tested it, we can do it (actually we are about to start doing that). Regards -- Jaime Nebrera - jnebrera@eneotecnologia.com Consultor TI - ENEO Tecnologia SL Telf.- 95 455 40 62 - 619 04 55 18
Jaime Nebrera wrote:>>> The documentation states they are more or less compatible with >>>standard netfilter, but anybody has tested if it is compatible with >>>shorewall? Tom, have you? >>No. >You asked if I had tested it -- I said No. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
On Tuesday 26 April 2005 04:03 am, Jaime Nebrera wrote:> Hi all, > > http://www.hipac.org/index.htm > > I have just discovered this great project. It seems it surpasses > standard netfilter in performance. >Quote: nf-HiPAC is a very efficient packet filter implemented on top of the netfilter framework which is included in the linux 2.4 -----So one has to ask, if they are built on top of the standard netfilter how can they surpass it? Perhaps you meant to suggest it surpassed iptables? -- John Andersen - NORCOM http://www.norcomsoftware.com/
John Andersen wrote:> On Tuesday 26 April 2005 04:03 am, Jaime Nebrera wrote: >> Hi all, >> >> http://www.hipac.org/index.htm >> >> I have just discovered this great project. It seems it surpasses >>standard netfilter in performance. >> > > Quote: > nf-HiPAC is a very efficient packet filter implemented on top of the > netfilter framework which is included in the linux 2.4 > > -----So one has to ask, if they are built on top of the standard netfilter > how can they surpass it? Perhaps you meant to suggest it surpassed > iptables? >I notice that it only works with kernel 2.4.... That alone means that I won''t spend any time on it. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key