Hi Rainer, Rainer Sabelka wrote: > Thanks Pablo. I've tested your patches but unfortunately I still get "Cannot > allocate memory" sometimes. > > Jun 16 22:24:45 fw1b conntrack-tools[5599]: committing external cache > Jun 16 22:24:45 fw1b conntrack-tools[5599]: commit-create: Cannot allocate > memory > Jun 16 22:24:45 fw1b conntrack-tools[5599]: Committed 623 new entries > Jun 16 22:24:45 fw1b conntrack-tools[5599]: 1 entries can't be committed Sorry for the late reply. The problem seems to be in the kernel side. It was introduced in 2.6.23. I have posted a patch that fixes it [1]. It applies to 2.6.27-rc but it should be easy to backport it. [1] http://marc.info/?l=netfilter-devel&m=121812264402131&w=2 -- "Los honestos son inadaptados sociales" -- Les Luthiers -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html