[strongSwan] Performance with lots of tunnels and (XFRM) policies

Noel Kuntze noel at familie-kuntze.de
Sun Mar 8 01:15:47 CET 2015


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello list,

I would like to know how the performance of strongswan/Linux is with about 1000 established tunnels
and ~3000 (XFRM) policies. Does any of the list readers have information about this?
How much traffic can be forwarded? Is the performance hit because of the large number of policies in any way significant?
When does it get critical?
- -- 

Mit freundlichen Grüßen/Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=Y2HU
-----END PGP SIGNATURE-----




More information about the Users mailing list