Re: Thousands of interfaces



David Miller wrote:
From: Peter Hicks <peter.hicks@xxxxxxxxxxx>
Date: Tue, 31 Oct 2006 09:25:50 +0000

[ Discussion belongs on netdev@xxxxxxxxxxxxxxx, added to CC: ]

I have a dual 3GHz Xeon machine with a 2.4.21 kernel and thousands (15k+) of
ipip tunnel interfaces. These are being used to tunnel traffic from remote
routers, over a private network, and handed off to a third party.
...
Is it possible to speed up creation of the interfaces? Currently it takes
around 24 hours. Is there are more efficient way to handle a very large
number of IP-IP tunnels? Would upgrading to a 2.6 kernel be of use?

2.6 (and the associated 'ip' tool) does have some improvements for showing very
large numbers of interfaces. I haven't tried more than a few thousand though...

Ben


--
Ben Greear <greearb@xxxxxxxxxxxxxxx> Candela Technologies Inc http://www.candelatech.com


-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/



Relevant Pages

  • Re: Thousands of interfaces
    ... These are being used to tunnel traffic from remote ... routers, over a private network, and handed off to a third party. ... has a several N^2 searches for interfaces. ...
    (Linux-Kernel)
  • Thousands of interfaces
    ... ipip tunnel interfaces. ... These are being used to tunnel traffic from remote ... ip tunnel add $interface mode ipip remote $peer local $eth0_address ...
    (Linux-Kernel)
  • Re: A question about Checkpoint firewall and Telnet over VPN
    ... I have been trying different options to resolve an issue with a remote ... I have the tunnel up and working. ... Since I am using Shiva VPN devices, I have tried using their Shiva ... VPN connection via an ADSL connection that connected to the company LAN ...
    (comp.security.firewalls)
  • Re: A question about Checkpoint firewall and Telnet over VPN
    ... I have been trying different options to resolve an issue with a remote ... I have the tunnel up and working. ... Since I am using Shiva VPN devices, I have tried using their Shiva ... The only problem is with the telnet session from that remote site ...
    (comp.security.firewalls)
  • Re: RV042 - Does anyone understand it? Documentation?
    ... Launch a packet destined for a "foreign" private subnet. ... Route such packets at their source to the LAN address of the RV042 VPN ... When the packet is received at the other end of the tunnel, ... i.e. the packet is destined neither for the local nor the remote subnet. ...
    (comp.dcom.vpn)