Hi Daniel, Do you try to turn off nf_conntrack_tcp_loose as below: echo 0 > /proc/sys/net/netfilter/nf_conntrack_tcp_loose Thanks, Xiong On Thu, 2013-03-07 at 09:07 -0800, Daniel L. Miller wrote: > On 3/7/2013 8:29 AM, Jan Engelhardt wrote: > > On Thursday 2013-03-07 17:13, Daniel L. Miller wrote: > > > >> I've noticed that my connection tracking counters keep increasing - > > Which counters? > > > /proc/sys/net/netfilter/nf_conntrack_count > > and when it reaches /proc/sys/net/netfilter/nf_conntrack_max things break. > -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html