Czasem zdarza się, że net przestaje działać, a w logach komunikat 'ip_conntrack: table full, dropping packet'. Wtedy przydaje się to:
echo "2400" > /proc/sys/net/ipv4/tcp_keepalive_time echo "30" > /proc/sys/net/ipv4/tcp_fin_timeout echo "60" > /proc/sys/net/ipv4/netfilter/ip_conntrack_generic_timeout echo "20" > /proc/sys/net/ipv4/netfilter/ip_conntrack_icmp_timeout echo "60" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_close_wait echo "1" > /proc/sys/net/ipv4/igmp_max_memberships echo "0" > /proc/sys/net/ipv4/tcp_window_scaling echo "0" > /proc/sys/net/ipv4/tcp_sack echo "32768-64000" > /proc/sys/net/ipv4/ip_local_port_range echo "43200" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_established echo "5" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_close echo "20" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_fin_wait echo "30" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_last_ack echo "20480" > /proc/sys/net/ipv4/ip_conntrack_max echo "10240" > /proc/sys/net/ipv4/netfilter/ip_conntrack_max echo "40" > /proc/sys/net/ipv4/netfilter/ip_conntrack_tcp_timeout_time_wait echo "30" > /proc/sys/net/ipv4/netfilter/ip_conntrack_udp_timeout echo "180" > /proc/sys/net/ipv4/netfilter/ip_conntrack_udp_timeout_stream echo "20" > /proc/sys/net/ipv4/ipfrag_time echo "1280" > /proc/sys/net/ipv4/tcp_max_syn_backlog

Komentarze