diff options
author | Mohit Mehta <mohit.mehta@vyatta.com> | 2010-05-17 15:23:22 -0700 |
---|---|---|
committer | Mohit Mehta <mohit.mehta@vyatta.com> | 2010-05-17 15:23:22 -0700 |
commit | bf09fe16cc778746c9636c7dd3e596e2c790a7fe (patch) | |
tree | a54f18fb641ad8add24652df4acc778628cdd44a /scripts/firewall/firewall.init.in | |
parent | b9fe6eed4288c8bcb82edf7af0badefe6deb3a04 (diff) | |
download | vyatta-cfg-firewall-bf09fe16cc778746c9636c7dd3e596e2c790a7fe.tar.gz vyatta-cfg-firewall-bf09fe16cc778746c9636c7dd3e596e2c790a7fe.zip |
Fix Bug 5588 Add ability to modify conntrack expectation table size
* added 'firewall conntrack-expect-table-size' to modify expect table's size
* added 'firewall conntrack-hash-size' to set hash size for conntrack table
Diffstat (limited to 'scripts/firewall/firewall.init.in')
-rw-r--r-- | scripts/firewall/firewall.init.in | 3 |
1 files changed, 3 insertions, 0 deletions
diff --git a/scripts/firewall/firewall.init.in b/scripts/firewall/firewall.init.in index d93b13c..22f48fd 100644 --- a/scripts/firewall/firewall.init.in +++ b/scripts/firewall/firewall.init.in @@ -92,6 +92,9 @@ start () { # set conntrack table size sysctl -q -w net.nf_conntrack_max=16384 + + # set conntrack expect table size + sysctl -q -w net.netfilter.nf_conntrack_expect_max=2048 } case "$ACTION" in |