* 2.4.20-pre7: ip_conntrack: table full, dropping packet.
@ 2002-10-21 18:16 Stephan von Krawczynski
2002-10-21 21:55 ` Harald Welte
0 siblings, 1 reply; 2+ messages in thread
From: Stephan von Krawczynski @ 2002-10-21 18:16 UTC (permalink / raw)
To: linux-kernel; +Cc: laforge, Rusty Russell
Hello all,
After several days running kernel 2.4.20-pre7 I came across the syslogged
message:
kernel: ip_conntrack: table full, dropping packet.
This box runs about 10 rules for destination nat. My simple question: is this a
bug, or a need to tune something? If it is a bug, is there a later kernel that
has it fixed?
--
Regards,
Stephan
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: 2.4.20-pre7: ip_conntrack: table full, dropping packet.
2002-10-21 18:16 2.4.20-pre7: ip_conntrack: table full, dropping packet Stephan von Krawczynski
@ 2002-10-21 21:55 ` Harald Welte
0 siblings, 0 replies; 2+ messages in thread
From: Harald Welte @ 2002-10-21 21:55 UTC (permalink / raw)
To: Stephan von Krawczynski
Cc: linux-kernel, Rusty Russell, Netfilter Mailinglist
On Mon, Oct 21, 2002 at 08:16:44PM +0200, Stephan von Krawczynski wrote:
> Hello all,
Hi Stephan. Don't know if you remember me, but we've met at some IN e.V.
meetings in the past ;)
> After several days running kernel 2.4.20-pre7 I came across the syslogged
> message:
>
> kernel: ip_conntrack: table full, dropping packet.
>
> This box runs about 10 rules for destination nat. My simple question:
> is this a bug, or a need to tune something? If it is a bug, is there a
> later kernel that has it fixed?
it's not about the number of NAT rules, but the number of connections
going on through your machine.
the FAQ (to be found at www.netfilter.org) describes how to raise the
number of connection tracking table entries.
> Regards,
> Stephan
--
Live long and prosper
- Harald Welte / laforge@gnumonks.org http://www.gnumonks.org/
============================================================================
GCS/E/IT d- s-: a-- C+++ UL++++$ P+++ L++++$ E--- W- N++ o? K- w--- O- M-
V-- PS+ PE-- Y+ PGP++ t++ 5-- !X !R tv-- b+++ DI? !D G+ e* h+ r% y+(*)
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2002-10-22 10:38 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2002-10-21 18:16 2.4.20-pre7: ip_conntrack: table full, dropping packet Stephan von Krawczynski
2002-10-21 21:55 ` Harald Welte
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
Powered by JetHome