Contributed by mitja on from the testing-is-pfun-on-a-bun dept.
over the course of n2k9 i tweaked the pfsync protocol and rewrote most of the implementation to address some performance issues i was hitting. ive got the code pretty stable now but it needs testing to move forward. is anyone willing to give this diff a go? there important changes in this code: - more efficient packet construction and parsing - more effective mitigation of pfsync transmits - bundling of multiple pfsync actions in a single pfsync packet there are some caveats though: - no compatability with pfsync v4 (the one currently in the tree) - bpf listeners on the pfsync interface will see the same messages as what is sent on the wire to the peers. this needs testing though.
If you want to see this new, improved pfsync(4) implementation committed into the tree in time for the 4.5 release, please test it now and submit your reports to dlg@!
Update (Mon Feb 16 01:36:03 CET 2009): David has just committed the update, keep on testing!
(Comments are closed)