tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: MSS clamping in NPF



The problem is I have circa 500 filter rules. I can't apply "norm"
on all rules that can ever pass a packet on pppoe0.

... or, I have to rework all of my rules: do all of the filtering on
packet ingress, and do _only_ the normalization on the egress.

It sounds easy with a few rules, but can be hard with 12 interfaces,
about 60 subnets, etc.

--
Gergely EGERVARY



Home | Main Index | Thread Index | Old Index