Re: ip_conntrack & timing out of connections

Rasmus Bøg Hansen (moffe@amagerkollegiet.dk)
Tue, 6 Nov 2001 14:07:27 +0100 (CET)


On Tue, 6 Nov 2001 pcg@goof.com wrote:

> Nov 6 02:39:55 doom kernel: ip_conntrack: table full, dropping packet.

You probably need to do something like:

# We need a lot of concurrent connections
echo 65536 > /proc/sys/net/ipv4/ip_conntrack_max

(or how many you will need). Be aware that it will use up more memory -
the netfilter docs can tell you how much.

Rasmus

-- 
-- [ Rasmus 'Møffe' Bøg Hansen ] ---------------------------------------
If you only have a hammer
everything looks like a nail
--------------------------------- [ moffe at amagerkollegiet dot dk ] --

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/