IPTables and logging - performance issues?

Alexander Dalloz alexander.dalloz at uni-bielefeld.de
Mon Oct 25 22:40:52 UTC 2004


Am Di, den 26.10.2004 schrieb Ben Halicki um 0:10:

> I am planning on logging all rejected packets under ports 1024 using IPtables.  Anyone know if there
 are any performance issues related to this?

> Ben Halicki

The performance impact depends both on the hardware you use for iptables
logging and which services you run on the host with how much traffic.
Your logging plans can mean a constant and frequent log file writing
under bad conditions. Maybe you explain why you have something like that
in mind and what you want to gain by it.

Alexander


-- 
Alexander Dalloz | Enger, Germany | GPG key 1024D/ED695653 1999-07-13
Fedora GNU/Linux Core 2 (Tettnang) kernel 2.6.8-1.521smp 
Serendipity 00:33:37 up 5 days, 21:13, load average: 0.78, 0.58, 0.37 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: Dies ist ein digital signierter Nachrichtenteil
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20041026/c30cd2d9/attachment-0001.sig>


More information about the fedora-list mailing list