On Tue, 25 Oct 2005, Radu Oprisan wrote:
Ma confrunt si eu cu o problema sub forma erorilor, pachetelor dropate si a
overrun-urilor din paste-ul de mai jos:
Erori: nasol, scarmana sirmele sau placa de retea;
Pachete dropate: faci qos pe interfata aia? Pachetele care iti
sint dropate in qdisc-uri iti incrementeaza acel counter, inclusiv
pachetele dropate de iptables -j DROP;
Overruns: faci vreun tunel si ai mtu-ul prea mare pe acolo?
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
ip_conntrack: table full, dropping packet.
Si de aici iti pot apare pachete dropate. In tabela ce
connection tracking nu mai ai loc.
cu tot cu:
echo 65535 > /proc/sys/net/ipv4/ip_conntrack_max
Pai daca ai 70000 de flow-uri poti sa faci ce vrei tu in
ip_conntrack_max, nu rezolvi. Probabil ai vreo rabla prin reteaua locala
care floodeaza sau esti tu floodat din exterior.
--
Any views or opinions presented within this e-mail are solely those of
the author and do not necessarily represent those of any company, unless
otherwise expressly stated.
_______________________________________________
RLUG mailing list
RLUG@lists.lug.ro
http://lists.lug.ro/mailman/listinfo/rlug