Renaud Allard <ren...@allard.it> writes:

> It happened to me also with servers with huge white/black lists. If
> it's happening for new connections, ensure that pf is configured with
> enough maximum table entries (set limit table-entries).

That's interesting.  Hitting table size limits would explain the
symptoms.  The blacklists we used were uatraps, nixspam and bsdly --
at the time we observed this, size about 60,000, 40,000 and 3000ish
respectively -- for a total of just over 100,000.  IIRC the greylist
had just grown to somewhat more than 100,000 too.  This with no
non-default settings with respect to tables.

All the best,
Peter
-- 
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.

Reply via email to