All of lore.kernel.org
 help / color / mirror / Atom feed
From: Antony Stone <Antony@Soft-Solutions.co.uk>
To: netfilter@lists.netfilter.org
Subject: Re: Maxium concurrent connections with IPTables
Date: Mon, 2 Aug 2004 20:14:54 +0100	[thread overview]
Message-ID: <200408022014.54628.Antony@Soft-Solutions.co.uk> (raw)
In-Reply-To: <200408022001.49637.Antony@Soft-Solutions.co.uk>

On Monday 02 August 2004 8:01 pm, Antony Stone wrote:

> On Monday 02 August 2004 7:15 pm, Small, Jim wrote:
> > I'm curious, what is the maximum number of concurrent connections
> > possible with IPTables using connection tracking for udp and for tcp? 
> > (using latest 2.4 kernel and 2.6 kernel)
>
> Depends on the amount of memory in your machine, and the setting of
> /proc/sys/net/ipv4/ip_conntrack/max

Oops - that should be /proc/sys/net/ipv4/ip_conntrack_max of course.

Incidentally, if you don't change this value, it's calculated so that it uses 
approximately 5% of the system's memory (in other words, you should be able 
to increase the conntrack table capacity by a factor of about 20 on a system 
which isn't using memory for anything else).

Antony.

-- 
Software development can be quick, high quality, or low cost.

The customer gets to pick any two out of three.

                                                     Please reply to the list;
                                                           please don't CC me.



  reply	other threads:[~2004-08-02 19:14 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-08-02 18:15 Maxium concurrent connections with IPTables Small, Jim
2004-08-02 19:01 ` Antony Stone
2004-08-02 19:14   ` Antony Stone [this message]
2004-08-03  7:46 ` Jozsef Kadlecsik

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200408022014.54628.Antony@Soft-Solutions.co.uk \
    --to=antony@soft-solutions.co.uk \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.