www.emsdn.com
Class Profile: Home »» Linux [Linux] under "Linux" »»» Increasing ip_conntrack_max

Increasing ip_conntrack_max


My messages log is full of ip_conntrack: table full, dropping packet
ip_conntrack_max is set at 65536
The server is running Redhat Enterprise 4 release 4 and fully updated. It has 2 GB of memory and uses 1 GB in production.
It has 4 interfaces and is used a router and a firewall with iptables.
What is the limit on ip_conntrack_max? Can I increase it more? How can I resolve teh problem of the table being full?
Thanks,
Jay


No. 1# | By Developer Tags User at [2008-5-5] | size: 346 bytes

Yoloits wrote:

What is the limit on ip_conntrack_max? Can I increase it more? How can I resolve teh problem of the table being full?

You can increase it easily (echo a-huge-number
/), but a better way using
the almost-unknown hashsize option of ip_conntrack module:

We had the same issue and the solutions above helped.



Linux Hot!

Linux New!


Copyright © 2008 www.emsdn.com • All rights reserved • CMS Theme by www.emsdn.com - 0.422