← Back to team overview

openstack team mailing list archive

iptables performance issue

 

Hi all,

Currently, openstack heavily uses  iptables in network setup(firewall, NAT,
etc.), which may trigger performance issue on some situations. For example,
I have ever found packet dropping in host for several times, due to
connection tracking triggered by NAT.

By now, I have to find some stuff on the internet to do performance tuning
for iptables. Is it a correct direction to go, or is there any mature
solution for this issue?


Best Regards.

Yufang