greg gede wrote:
> 
> Lately i'm having problem with udp masq entry in my
> internet leaf-router with a lot of messages like this:
> IP_MASQ:ip_masq_new(proto=UDP): could not get free
> masq entry (free=36864)

Just like Luis and Ray I will also be doing some guessing, it seems that
you have had this problem earlier, according to the mail archive -
http://sourceforge.net/mailarchive/forum.php?thread_id=3802081&forum_id=5483
- which assumes you are still using the Dachstein CD. It's mentioned in
the docs that you should increase the cache more than its default size
of 1 Meg if you are running a large network.

http://leaf.sourceforge.net/devel/cstein/Packages/dnscache.htm  (Nr.6)

> 
> here's my network looks like :
>         -------------          -----------------------
> 
>         |leaf-router|          |RH9 squid & dnscachex|
> to -----|eth0   eth1|---|HUB|--|eth0             eth1|
> internet|           |          |                     |
>         -------------          -----------------------
>                                                     |
>                                                     |
>                                              |switch|
>                                                 | | |
>                                      subnet A - | | |
>                                      subnet B --- | |
>                                      subnet C ------|
> 
> everytime i stop dnscachex, the messages also stop. am
> i having dns abuse from my internal network? or is it
> because there are too many clients in my internal
> network? how do i deal with it?

As Luis and Ray have already mentioned, dnscachex should not be running
on the RH9 box but only on the LEAF router since it is designed as an
external cache service. It can be done, yes, but it can get to be quite
tricky to administer for a large network. If you have dnscache already
running on the LEAF box just disable the dnscachex service on RH9 -
http://cr.yp.to/daemontools/faq/create.html#remove

The documentation at Mr. Bernstein's site is quite straight forward and
easy to grasp if DNS issues seem to be confusing at times...

http://cr.yp.to/djbdns.html

-- 
Patrick Benson
Stockholm, Sweden


-------------------------------------------------------
SF.Net is sponsored by: Speed Start Your Linux Apps Now.
Build and deploy apps & Web services for Linux with
a free DVD software kit from IBM. Click Now!
http://ads.osdn.com/?ad_id=1356&alloc_id=3438&op=click
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to