OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
ipsec scalability?

From: Daniel de Young (danielvelvetsea.com)
Date: Tue Jul 01 2003 - 17:54:57 CDT


I'm finishing up a practical about interop between openbsd, linux, and
sonicwall.

I'd like to include a few notes on scalability.

Sonicwall is limited by how much you want to spend.

Linux (freeswan) has a decent document about scalability issues.

A quick search of google results turned up little that seemed relevant.

What are list members experiences with running dozens ++ of tunnels. Any
hard limits or known/documented limits based on ram/proc etc.?

Impressions of the experienced?

Any insight would be appreciated.

This is just a side note to the focus of the paper. I don't have enough
time left to build the tools and run regression tests (it's due the 7th),
but I'd like to include something as a note to interested readers.

Thanks,

Daniel

P.S. The paper isn't an "A" is better than "B" comparison or a "feature
showdown". It's mainly a discussion about interop issues between them and
a tutorial on how to make it happen.