Hi all, Currently, openstack heavily uses iptables in network setup(firewall, NAT, etc.), which may trigger performance issue on some situations. For example, I have ever found packet dropping in host for several times, due to connection tracking triggered by NAT. By now, I have to find some stuff on the internet to do performance tuning for iptables. Is it a correct direction to go, or is there any mature solution for this issue? Best Regards. Yufang -------------- next part -------------- An HTML attachment was scrubbed... URL: <http://lists.openstack.org/pipermail/openstack/attachments/20130227/ccb731bb/attachment.html>