mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
* 2.4.20-pre7: ip_conntrack: table full, dropping packet.
@ 2002-10-21 18:16 Stephan von Krawczynski
  2002-10-21 21:55 ` Harald Welte
  0 siblings, 1 reply; 2+ messages in thread
From: Stephan von Krawczynski @ 2002-10-21 18:16 UTC (permalink / raw)
  To: linux-kernel; +Cc: laforge, Rusty Russell

Hello all,

After several days running kernel 2.4.20-pre7 I came across the syslogged
message:

kernel: ip_conntrack: table full, dropping packet.

This box runs about 10 rules for destination nat. My simple question: is this a
bug, or a need to tune something? If it is a bug, is there a later kernel that
has it fixed?
-- 
Regards,
Stephan

^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: 2.4.20-pre7: ip_conntrack: table full, dropping packet.
  2002-10-21 18:16 2.4.20-pre7: ip_conntrack: table full, dropping packet Stephan von Krawczynski
@ 2002-10-21 21:55 ` Harald Welte
  0 siblings, 0 replies; 2+ messages in thread
From: Harald Welte @ 2002-10-21 21:55 UTC (permalink / raw)
  To: Stephan von Krawczynski
  Cc: linux-kernel, Rusty Russell, Netfilter Mailinglist

On Mon, Oct 21, 2002 at 08:16:44PM +0200, Stephan von Krawczynski wrote:
> Hello all,

Hi Stephan. Don't know if you remember me, but we've met at some IN e.V.
meetings in the past ;)

> After several days running kernel 2.4.20-pre7 I came across the syslogged
> message:
> 
> kernel: ip_conntrack: table full, dropping packet.
> 
> This box runs about 10 rules for destination nat. My simple question:
> is this a bug, or a need to tune something? If it is a bug, is there a
> later kernel that has it fixed?

it's not about the number of NAT rules, but the number of connections
going on through your machine.

the FAQ (to be found at www.netfilter.org) describes how to raise the
number of connection tracking table entries.

> Regards,
> Stephan

-- 
Live long and prosper
- Harald Welte / laforge@gnumonks.org               http://www.gnumonks.org/
============================================================================
GCS/E/IT d- s-: a-- C+++ UL++++$ P+++ L++++$ E--- W- N++ o? K- w--- O- M- 
V-- PS+ PE-- Y+ PGP++ t++ 5-- !X !R tv-- b+++ DI? !D G+ e* h+ r% y+(*)

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2002-10-22 10:38 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2002-10-21 18:16 2.4.20-pre7: ip_conntrack: table full, dropping packet Stephan von Krawczynski
2002-10-21 21:55 ` Harald Welte

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

Powered by JetHome