Odd problem with conntrack

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,
We have encounterad an odd problem when enabling an statefull inspection
rule. When using rsync with it's own protocoll (on port 873) it seem to
"lose" it's states after between 35 and 50 MB data. If we instead rsync
over ssh it is no problem to transfer over 4 GB.
We are using a gigabit network, tg3 and e1000 network-cards. We have tried
with both an cheap Netgear switch and a (not that cheap) Cisco switch with
the same result.
I tried to increase
/proc/sys/net/core/{wmem_max,wmem_default,rmem_max,rmem_default} to
83886080 and got somewhat better result but it's still not 100%
successfull.
I've attached our rules.

Many thanks in advance,
Jimmy Hedman

Attachment: rules.save
Description: Binary data


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux