summaryrefslogtreecommitdiff
path: root/scripts/firewall/firewall.init.in
diff options
context:
space:
mode:
authorMohit Mehta <mohit.mehta@vyatta.com>2010-05-17 15:23:22 -0700
committerMohit Mehta <mohit.mehta@vyatta.com>2010-05-17 15:23:22 -0700
commitbf09fe16cc778746c9636c7dd3e596e2c790a7fe (patch)
treea54f18fb641ad8add24652df4acc778628cdd44a /scripts/firewall/firewall.init.in
parentb9fe6eed4288c8bcb82edf7af0badefe6deb3a04 (diff)
downloadvyatta-cfg-firewall-bf09fe16cc778746c9636c7dd3e596e2c790a7fe.tar.gz
vyatta-cfg-firewall-bf09fe16cc778746c9636c7dd3e596e2c790a7fe.zip
Fix Bug 5588 Add ability to modify conntrack expectation table size
* added 'firewall conntrack-expect-table-size' to modify expect table's size * added 'firewall conntrack-hash-size' to set hash size for conntrack table
Diffstat (limited to 'scripts/firewall/firewall.init.in')
-rw-r--r--scripts/firewall/firewall.init.in3
1 files changed, 3 insertions, 0 deletions
diff --git a/scripts/firewall/firewall.init.in b/scripts/firewall/firewall.init.in
index d93b13c..22f48fd 100644
--- a/scripts/firewall/firewall.init.in
+++ b/scripts/firewall/firewall.init.in
@@ -92,6 +92,9 @@ start () {
# set conntrack table size
sysctl -q -w net.nf_conntrack_max=16384
+
+ # set conntrack expect table size
+ sysctl -q -w net.netfilter.nf_conntrack_expect_max=2048
}
case "$ACTION" in