> Regarding the hashing schemes, please see discussions on netfilter-devel
> over the last weeks:
>
> http://lists.netfilter.org/pipermail/netfilter-devel/2002-July/thread.html
>
> and a small presentation of various bucket sizes / hash functions
> for some real world scenarios: http://bei.bof.de/ex6/
> This presentation, a bit terse on comments, links to a tarball
> which allows you to recreate the same presentation for any
> dump of /proc/net/ip_conntrack, varying bucket counts and
> hash functions.
Have you done any profiling of real workloads to see where the actual
overhead comes from?
-Andi
|