Geoff Mulligan writes:
>Is screend running on a 486 "fast enough" to keep up at ethernet speed?
>How about faster than a T1?
At ethernet speeds it adds something like 2-4ms to the latency.
Not too bad, really. Not great, but for the price it's pretty good.
You can have:
a) Cheap
b) Fast
c) Good
- Pick two.
If you're playing T3 speed games, you're already buying very
expensive sexy hardware just to move packets around. "Low cost firewall"
is an oxymoron in that situation -- just buy high-end routers like an
NSC that have really awesome screening capabilities.
It's not fair to beat up on Brent when he assume T1 or lower
speed connection. That's what the majority of the folks running
firewalls are dealing with. Anything else is right out of the ballpark.
By the time we are all running local T3 connects to the 'net, the
future-equivalent of a '486 will handle the traffic just fine using
the future-equivalent of screend.
mjr.
|
|