From: John E. <sh...@co...> - 2003-04-29 14:31:39
|
On Tue, Apr 29, 2003 at 10:25:10AM +0200, Franck HERESON wrote: > Hi, > I've successfully upgraded form 1.2 to V1.3 on a P166 MMX with 48 Mo RAM and > 3Go HD. > Green is 3Com 3c905x > RED is USR Sporster isdn Ta. > > The system works very slowly. The isdn connection is on demand and the users > get errors when the link has to go up. > > It seems that a lot of CPU is used by mgrt just after the connection and the > browsers don't get the DNS answers soon enough. > > I'm going back to 1.2. > > > Anyway it's a very nice system, I hope you'll keep it working on small > machines. > > Rgs, > > F.HÉRÉSON > <mailto:fra...@fn...> Hi Is Snort (the Intrusion Detection System) turned on ? The latest version of Snort (v2) uses a lot more memory (about 40MB) and I suspect that this is causing the DNS server and other programs to be moved into swap, hence the delay. I've got v1.3.0 on a P166 with 64MB of RAM running an ADSL line and that has no noticable speed slow downs. Memory use with Snort, IPSec and a single SSH login is: -------------------------------------------------------------------------- # free -t total used free shared buffers cached Mem: 62948 48392 14556 0 1440 8512 -/+ buffers/cache: 38440 24508 Swap: 273096 12996 260100 Total: 336044 61388 274656 -------------------------------------------------------------------------- So my recomendation is to either switch off Snort or add at least 16MB more RAM. -- #--------------------------------------------------------# | John Edwards Email: Joh...@uk... | | | | "SEP is intended as a management routing protocol, | | and should not be used in a production enviroment." | #--------------------------------------------------------# |