OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: PF and outgoing traffic

From: Henning Brauer (lists-openbsdbsws.de)
Date: Wed Jul 02 2003 - 11:12:00 CDT


On Wed, Jul 02, 2003 at 04:35:33PM +0200, Bc. Radek Krejca wrote:
> how it works in Linux? Linux can manage incomming and outgoing
> traffic (I have few experience with Linux, but my friend told me
> that it works).

he lied to you, then.

please think about it for a moment.

remote <---- leased line/dsl/cable ----> pf box <---> LAN

now, usually, the leased line/cable/dsl is the bottleneck (I refer to
it as "line" in the following).

when you send out data, you pf box can queue the rafic in whatever way
ot wants, sending higher priorized packets earlier and delaying lower
priorized ones etc etc etc.

in the other direction, the packets alread _passed the line_ and thus
the bottleneck. wether you delay them until sending to ythe LAN
doesn't matter any more - the line is already saturated.

--
http://2suck.net/hhwl.html - http://www.bsws.de/
Unix is very simple, but it takes a genius to understand the simplicity.
(Dennis Ritchie)