Astaro User Bulletin Board
Go Back   Astaro User Bulletin Board > Astaro Gateway Products > General Discussion

Welcome to the Astaro User Bulletin Board.
If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Reply
 
LinkBack Thread Tools Display Modes
  #21 (permalink)  
Old 01-24-2007, 12:27 AM
RFCat_vk's Avatar
Wizard
 
Join Date: Aug 2005
Location: Victoria, Australia
Posts: 2,554
Default Concurrent connections

My current v6 licence allows for 32000 concurrent connections, dropping it to a 1000 per user might just stretch things a little bit for some of the games etc. I think for the 1st time we went over or close to 4000 with 3 users on using v7, under v6 it was never an issue count never went anywhere near that high.

It would appear that Astaro have changed the way connections are counted.

At the busiest time my home LAN will have 6 devices accessing the internet with another 3 devices providing network printing and wireless access point. 2 of the devices require 2 IP because they use both wireless and cable and then you add the mandatory ASG internal interface and without trying too hard you have 11 IPs.
So how to reduce the count, make sure the laptops are assigned the Same IP for both wireless and ethernet connections.

No room for expansion with the new counting scheme.

Ian M

Forgot that I am trying to add a VOIP box when I change ISPs later in the year. Looking like a couple of boxes will have to go behind a NAT'd box.
__________________
Home Power User unlimited licence - v7.50x - AMD X2 5050e with 2gb,1 intel NIC, the onboard NIC and netgear gs108t with vlans.

Last edited by RFCat_vk; 01-24-2007 at 12:58 AM. Reason: added VOIP
Reply With Quote
  #22 (permalink)  
Old 01-24-2007, 01:14 AM
Simon Shaw's Avatar
Aussie moderator.
 
Join Date: Jun 2001
Location: Perth, Western Australia
Posts: 2,628
Default

Yeah, we have the same issue with laptops. Most staff here (say 20-30 have laptops, each chews TWO IP addresses as they wander from cabled to wireless connections.)

Most users run both at the same time, although I guess only the first "active" connection is the one used for routing. Still though, we are using a lot of extra IP addresses we don't need to... But this is difficult to solve on our side if we need to maintain conveniance for end-users.
__________________
Simon Shaw
Systems Manager
Micromine PL

Intel 2.66GHz Quad Core, 4GB (2 x 2GB) PC-6400 800Mhz 4-4-4-12, WD 300GB 10K RPM VelociRaptor, Intel Pro/1000 Quad Port PCI-X
http://www.sputcorp.com/
Reply With Quote
  #23 (permalink)  
Old 01-24-2007, 02:34 AM
Moderator
 
Join Date: Jul 2001
Location: southern California
Posts: 5,151
Default

FWIW,
I currently (and normally) have 1 Win2000 PC running eMule and Azureus (BitTorrent). A development webserver/fileserver is currently idle, and has been for days. My other computers are all off, and are only used for casual surfing anyways.

ASL V5 shows I am using over 5600 connections in the "connection tracking table"!

Barry
__________________
http://DealBert.net
Home & business end-user since v1.x
  • ASL 6.3x, HP DL145 Dual Opteron, 1GB RAM, 6 gigE NICs, 50-IP Platinum License
  • ASL 7.3x, Dell PE1550 Dual PIII 1GHz, 1GB RAM, 2 NICs, 50-IP Platinum License
  • ASL 7.5x, 17-watt fanless mini-ITX system: MSI IM-945GSE-A Atom n270, 2GB RAM, Morex T3310 case. 2 Intel GigE, 3 VLANs. 80G 5200rpm 2.5" HD
    Netgear GS108T gigE VLAN switch & Linksys WRT54G WAP
    Total network infrastructure: 27 watts. 100-IP Home User. FiOS 10mb/2mb
Reply With Quote
  #24 (permalink)  
Old 01-24-2007, 02:37 AM
Simon Shaw's Avatar
Aussie moderator.
 
Join Date: Jun 2001
Location: Perth, Western Australia
Posts: 2,628
Default

That would be your P2P software...
__________________
Simon Shaw
Systems Manager
Micromine PL

Intel 2.66GHz Quad Core, 4GB (2 x 2GB) PC-6400 800Mhz 4-4-4-12, WD 300GB 10K RPM VelociRaptor, Intel Pro/1000 Quad Port PCI-X
http://www.sputcorp.com/
Reply With Quote
  #25 (permalink)  
Old 01-24-2007, 07:55 AM
Junior Member
 
Join Date: May 2004
Location: Canada
Posts: 18
Default

Well, I agree that the 10 IP limit is a bit too low..

Here is what I have running that needs internet access:

1 Win3k Server (Serving 2.5TB of Audio/Video)
2 XP Workstations
2 XP Laptops
2 XBOX's running XBMC
1 Vonage VOIP Router
1 TiVo Box
1 Webcam

That's 10 already.. and I'm sure I missed something.. That leaves me with no room to grow.. and if they say they start blocking at 110%, that means with a 10 IP license it will start blocking at 11.

I would pay a resonable fee to upgrade to a littler bigger version.. say 20 IP's

As to the 1000 connection limit.. I can reach that easy.. (Bittorrent) I usually have 800 connections just on one Torrrent machine..
__________________
ASL 6.303 / 7 Beta
Reply With Quote
  #26 (permalink)  
Old 01-24-2007, 08:56 AM
simby's Avatar
Senior Member
 
Join Date: May 2006
Posts: 124
Default

any astaro reply?
__________________
Asatro Internet Security 6.312
H. info: 3.2Ghz Intel P4 541+, 4096MB, 80GB/7.200 rpm/min SATA
N. info: 2x Realtek n. 10/100, Dlink 24x switch, FTTH (Optical fibers) 10 | 10Mb

I use IPv7 now... It's pretty much IPv6, but the headers contain p0rn. Saves bandwidth.
Reply With Quote
  #27 (permalink)  
Old 01-24-2007, 12:01 PM
RufusToofus's Avatar
Senior Member
 
Join Date: Apr 2006
Location: Sus***,UK
Posts: 174
Default

..... But in a Commercial environment, the ASG120 appliances and upwards are unlimited ...
Reply With Quote
  #28 (permalink)  
Old 01-24-2007, 12:11 PM
RufusToofus's Avatar
Senior Member
 
Join Date: Apr 2006
Location: Sus***,UK
Posts: 174
Default

Bet your ISP loves you then !
Reply With Quote
  #29 (permalink)  
Old 01-24-2007, 02:36 PM
simby's Avatar
Senior Member
 
Join Date: May 2006
Posts: 124
Default

anyoane have tested trustix firewall ? http://firewall.trustix.com/small/features.html
__________________
Asatro Internet Security 6.312
H. info: 3.2Ghz Intel P4 541+, 4096MB, 80GB/7.200 rpm/min SATA
N. info: 2x Realtek n. 10/100, Dlink 24x switch, FTTH (Optical fibers) 10 | 10Mb

I use IPv7 now... It's pretty much IPv6, but the headers contain p0rn. Saves bandwidth.
Reply With Quote
  #30 (permalink)  
Old 01-24-2007, 03:39 PM
Senior Member
 
Join Date: Jan 2006
Posts: 173
Default

Trustix doesn't look like it is free. You should check out PFSense which includes a good firewall, small footprint, Snort and VPN.

Doesn't have content filter though but I may switch to it anyway after my v6 subscription runs out unless v7 hasn't improved by leaps and bounds.
__________________
Astaro v7.100: 1500Mhz Athlon XP, 1GB, 40GB, Int/Ext/Dmz

Last edited by InlineFive; 01-24-2007 at 03:41 PM.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 02:32 PM.

 

Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.