[100777] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: cpu needed to NAT 45mbs

daemon@ATHENA.MIT.EDU (Christopher Morrow)
Thu Nov 8 16:40:18 2007

Date: Thu, 8 Nov 2007 13:31:35 -0800
From: "Christopher Morrow" <morrowc.lists@gmail.com>
To: "Carl Karsten" <carl@personnelware.com>
Cc: nanog@merit.edu
In-Reply-To: <47336295.2000400@personnelware.com>
Errors-To: owner-nanog@merit.edu


On 11/8/07, Carl Karsten <carl@personnelware.com> wrote:
>
> I do the networking in my house, and hang out with guys that do networking in
> small offices that have a few T1s.   Now I am talking to people about a DS3
> connection for 500 laptops*, and I am bing told "a p4 linux box with 2 nics
> doing NAT will not be able to handle the load."   I am not really qualified to
> say one way or the other.  I bet someone here is.

how about just looking at what a production MSSP would roll out for a
similar situation.. a nokia ip530-class box (I think it's a ip580
these days) with Checkpoint as the 'firewall'... Certainly (poke fbsd
fanboys) a fbsd box of similar config can perform as well, yes? :)

I recall the ip530 being an intel P3-ish system
(http://www.google.com/search?hl=en&q=nokia+ip530&btnG=Google+Search)
I think we selected these at a past job because it could handle 2 quad
FE cards and a DS3 card...

home help back first fref pref prev next nref lref last post