From mboxrd@z Thu Jan 1 00:00:00 1970 From: Pablo Neira Subject: Re: question regarding iptables tuning (was Re: iptables denial of services) Date: Sat, 17 Apr 2004 21:08:55 +0200 Sender: netfilter-devel-admin@lists.netfilter.org Message-ID: <408180C7.6080302@eurodev.net> References: <408167F2.9060501@fl.priv.at> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit Return-path: To: Netfilter Development Mailinglist , Friedrich Lobenstock In-Reply-To: <408167F2.9060501@fl.priv.at> Errors-To: netfilter-devel-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Unsubscribe: , List-Archive: List-Id: netfilter-devel.vger.kernel.org Hi Friedrich, Friedrich Lobenstock wrote: > Any suggestions for those parameters that are based on your experiences? maybe this could be interesting for you, it's related to conntrack system. http://www.wallfire.org/misc/netfilter_conntrack_perf.txt http://bei.bof.de/ I don't know how up to date they are, actually they are still in my queue of things to be read ;-). regards, Pablo