Project

General

Profile

Actions

Feature #2240

closed

Find interface subnets and static routes without the routing table in outbound NAT rule generation for reflection

Added by Erik Fonnesbeck about 12 years ago. Updated over 11 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
NAT Reflection
Target version:
Start date:
02/28/2012
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:

Description

While it is only done once during filter reload, I've been told that on systems with a large IPv4 routing table, getting a copy of the routing table can take some number of minutes. Instead of using the routing table, the various places where this info resides in the config should be aggregated and used instead for finding the information that is needed for generating the outbound NAT rules for reflection.

Actions

Also available in: Atom PDF