Sponsored Content
Full Discussion: Bandwidth Caping With PF
Special Forums IP Networking Bandwidth Caping With PF Post 41457 by mrhyde on Monday 6th of October 2003 06:46:20 PM
Old 10-06-2003
Given your description it would be difficult to help you. Give a more detailed description of your network, what kind of switch are you using? how many hosts are there? what kind of connection have you got to the internet? Is pf enabled in /etc/rc.conf? Something as serious as a firewall, on large network could end up giving you an ulcer! I am currently configuring a OpenBSD firewall in a similar senario, prior to deploying the firewall on a production network I've been testing it in a lab.
To answer your second question on 'capping' yes is the answer, the pf man page refers to it as 'queueing'.

Last edited by mrhyde; 10-06-2003 at 07:59 PM..
 

9 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

bandwidth check?

I'm on T1, is there any way i can check my acctual bandwidth? Thank you all (3 Replies)
Discussion started by: solvman
3 Replies

2. IP Networking

Bandwidth Regulation

Hello, I was wondering how one would go about regulating bandwidth of a server running RH Linux 8.0 and Apache. I am running a webserver, and want only one person to be able to download one file at a time. So, they can't click about 10 files and soak up lots of bandwidth. Plus, I would like to cap... (2 Replies)
Discussion started by: Phobos
2 Replies

3. UNIX for Dummies Questions & Answers

Bandwidth Monitoring.

Hi, I'm looking for some way to bring up in a shell window a realtime (or something that updates at 10 second intervals or whatever) bandwidth monitor. I just want something that shows me how much kbps is going in and how much is going out of each interface. Is there something that might... (2 Replies)
Discussion started by: d11wtq
2 Replies

4. UNIX for Advanced & Expert Users

Bandwidth monitoring

Hi Gurus, Need to have a way to monitor Bandwidth utilization on Linux servers, running squid . Have worked on 3rd party monitoring tools like Bandwidth d, Nagios etc. But we are working to find out a way to monitor this through Sitescope, for which we need to find a file where the... (4 Replies)
Discussion started by: Crazy_murli
4 Replies

5. IP Networking

bandwidth

Hi, 1-What is bandewidth ? 2-How to calculate ? 3-How to measure ? Any free software to measure it ? Many thanks. (4 Replies)
Discussion started by: big123456
4 Replies

6. IP Networking

Bandwidth montor

Hi all I have been running iptraf on a linux box for a few months monitoring bandwidth utilization realtime from mac address with port mirroring. Now I want to graph these bandwidth utilization. Is MRTG the right software? Any ideas? (4 Replies)
Discussion started by: palm101
4 Replies

7. UNIX for Dummies Questions & Answers

Using Variables for Bandwidth control

Hi, I am very new to scripting and have a question regarding variables and their use in a bandwidth monitoring script. I have identified a few primary variables being; Bandwidth CIR Download=32kbits <- these match as per the script below Bandwidth PIR Download=96kbits Bandwidth CIR... (1 Reply)
Discussion started by: vinnir
1 Replies

8. Programming

Bandwidth monitoring using python

I wish to develop an application to monitor the network traffic of my system. I wish to know which computer networked to me is using most of the bandwidth. I know the basics of python but do not know how to start the work.. please suggest some good methods to follow. (7 Replies)
Discussion started by: coderhs
7 Replies

9. IP Networking

New network bandwidth requirements

Many papers, articles and posts about network bandwidth requirements refer to network traffic rules-of-thumb when estimating bandwidth requirements for a new network with an unknown load. I've seen a couple rules for video and VoIP. I'd be thankful if someone could share any rules-of thumb they... (5 Replies)
Discussion started by: redrider
5 Replies
SHOREWALL-INIT(8)						  [FIXME: manual]						 SHOREWALL-INIT(8)

NAME
shorewall-init - Companion package SYNOPSIS
/etc/init.d/shorewall-init [start|stop] DESCRIPTION
Shorewall-init is an optional package (added in Shorewall 4.4.10) that can be installed along with Shorewall, Shorewall6, Shorewall-lite and/or Shorewall6-lite. It provides two key features: 1. It can close (stop) the firewall during boot prior to starting the network. This can prevent unwanted connections from being accepted after the network comes up but before the firewall is started. 2. It can interface with your distribution's ifup/ifdown scripts and/or NetworkManager to allow firewall actions when an interface starts or stops. These two capabilities can be enabled separately. After you install the shorewall-init package, you can activate it by modifying the Shorewall-init configuration file: o On Debian-based system, the file is /etc/default/shorewall-init. o On other systems, the file is /etc/sysconfig/shorewall-init. To activate the safe boot feature, edit the configuration file and set PRODUCTS to a space-separated list of Shorewall products that you want to be closed before networking starts. Example: PRODUCTS="shorewall shorewall6" You also must insure that the compiled scripts for the listed products are compiled using Shorewall 4.4.10 or later. Shorewall shorewall compile Shorewall6 shorewall6 compile Shorewall-lite On the administrative system, enter the command shorewall export firewall from the firewall's configuration directory. Shorewall6-lite On the administrative system, enter the command shorewall6 export firewall from the firewall's configuration directory. The second feature (ifup/ifdown and NetworkManager integration) should only be activated on systems that do not use a link status monitor line swping or LSM. o Edit the configuration file and set IFUPDOWN=1 For NetworkManager integration, you will want to disable firewall startup at boot and delay it to when your interface comes up. For this to work correctly, you must set the required or the optional option on at least one interface then: o On Debian-based systems, edit /etc/default/product for each product listed in the PRODUCTS setting and set startup=0. o On other systems, use the distribution's service control tool (insserv, chkconfig, etc.) to disable startup of the products listed in the PRODUCTS setting. On a laptop with both ethernet and wireless interfaces, you will want to make both interfaces optional and set the REQUIRE_INTERFACE option to Yes in shorewall.conf[1](5) or shorewall6.conf[2] (5). This causes the firewall to remain stopped until at least one of the interfaces comes up. FILES
/etc/default/shorewall-init (Debian-based systems) or /etc/sysconfig/shorewall-init (other distributions) SEE ALSO
shorewall(8), shorewall-accounting(5), shorewall-actions(5), shorewall-blacklist(5), shorewall-hosts(5), shorewall_interfaces(5), shorewall-ipsets(5), shorewall-maclist(5), shorewall-masq(5), shorewall-nat(5), shorewall-netmap(5), shorewall-params(5), shorewall-policy(5), shorewall-providers(5), shorewall-proxyarp(5), shorewall-rtrules(5), shorewall-routestopped(5), shorewall-rules(5), shorewall.conf(5), shorewall-secmarks(5), shorewall-tcclasses(5), shorewall-tcdevices(5), shorewall-tcrules(5), shorewall-tos(5), shorewall-tunnels(5), shorewall-zones(5) NOTES
1. shorewall.conf http://www.shorewall.net/manpages/shorewall.conf.html 2. shorewall6.conf http://www.shorewall.net/manpages/../Manpages6/shorewall6.conf.html [FIXME: source] 06/28/2012 SHOREWALL-INIT(8)
All times are GMT -4. The time now is 09:55 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy