If the system is FreeBSD why not use pf? It can handle a lot of traffic in my experience.
-- Will
On 7/21/15 10:11 AM, Brian Kantor wrote:
It's a Dell R200 with dual-core Xeon 3.2GHz processor. It has two 1GbE Ethernet interfaces. Packet filtering and diversion are done in-kernel by ipfw; encapsulation by a user-space process. OS is FreeBSD.