On Tue, 25 Oct 2005, Radu Oprisan wrote:

Ma confrunt si eu cu o problema sub forma erorilor, pachetelor dropate si a overrun-urilor din paste-ul de mai jos:

        Erori: nasol, scarmana sirmele sau placa de retea;
Pachete dropate: faci qos pe interfata aia? Pachetele care iti sint dropate in qdisc-uri iti incrementeaza acel counter, inclusiv pachetele dropate de iptables -j DROP;
        Overruns: faci vreun tunel si ai mtu-ul prea mare pe acolo?

ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.

Si de aici iti pot apare pachete dropate. In tabela ce connection tracking nu mai ai loc.

cu tot cu:
echo 65535 > /proc/sys/net/ipv4/ip_conntrack_max

Pai daca ai 70000 de flow-uri poti sa faci ce vrei tu in ip_conntrack_max, nu rezolvi. Probabil ai vreo rabla prin reteaua locala care floodeaza sau esti tu floodat din exterior.

--
Any views or opinions presented within this e-mail are solely those of
the author and do not necessarily represent those of any company, unless
otherwise expressly stated.

_______________________________________________
RLUG mailing list
RLUG@lists.lug.ro
http://lists.lug.ro/mailman/listinfo/rlug

Raspunde prin e-mail lui