PF with 10Gb/s

Hi,

Can PF filter (with very simple rules) 10Gb/s? I need to detect DOS/DDOS attacks. I need to analyse this data to find what type of attack is this and apply a rule to filter bad packets. Can PF use all CPU cores? Do you known which firewall (PF, IPFW) is the faster to filter 10Gb/s? Do I need a special NIC? (yes a 10G NIC, but something else?)

Thank you.
 
It's hard to choose and find complete information about *BSD, Linux, PF, IPFW, hardware support/compatibility for 10G, SMP, IRQ CPU affinity ..
 
Back
Top