hi,
we are using several ccr's with high loads because of bgp etc.
i want to use the fastpath feature, for traffic forwarded by those routers trough vlan interfaces, but in the fastpath docu there is written:
IPv4 fast path is automatically used if following conditions are met:
firewal rules are not configured;
firewall address lists are not configured;
out of the fact, that those boxes are bgp border routers, there are a lot of inbound filter rules and also adress lists, to protect them.
there are no mangle rules nor any forward filters, nor queues etc, because the boxes just do straight traffic forwarding of several full feeds redundant.
is there any possibility to get the involved FORWARDING vlans into fastpath routing mode, that not 2gigs/sec of traffic have to pass trough the kernel?
fasttrack feature is not possible, because we disabled connection tracking to be more safe against ddos etc.
thanks for any suggestions.
cheers, wolfgang