Best practices for filter rules

It is recommended that you limit the number of filter rules to no more than 20 for each instance of the DNCA.

Note: Performance of the IP filters is known to degrade as more entries are added. It is a best practice to avoid having more than 20 entries in an instance.

To address this issue, you can:

  • Reduce the number of filter rules by using subnet masks. For example, if you are using individual filter rules for each port in a range of ports, you can use a subnet mask to create a single filter rule for all ports in the range.
  • Create multiple instances of the DNCA application. See Installing the Network Capture Application.