netfilter-devel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* iptables: Resource temporarily unavailable.
@ 2010-11-11 15:00 Jan Kasprzak
  2010-11-11 15:35 ` Eric Dumazet
  0 siblings, 1 reply; 9+ messages in thread
From: Jan Kasprzak @ 2010-11-11 15:00 UTC (permalink / raw)
  To: netfilter-devel

	Hello,

I have a iptables-based firewall with ~1200 IPv4 and ~950 IPv6 rules.
When I want to reload its configuration, I often get "Resource temporarily
unavailable" error from iptables.

I have a HA setup with two servers, and the error more often happens on
a server with four cores and 2 GB of RAM than on a server with two cores
and 4 GB of RAM.

I have added a band-aid fix to my startup script - sleeping for one second
and trying again when the error code from iptables is 4, and it apparently
helps. But the error messages from the startup script are still a bit ugly.
What else can I do in order to fix the problem?

	Thanks,

-Yenya

-- 
| Jan "Yenya" Kasprzak  <kas at {fi.muni.cz - work | yenya.net - private}> |
| GPG: ID 1024/D3498839      Fingerprint 0D99A7FB206605D7 8B35FCDE05B18A5E |
| http://www.fi.muni.cz/~kas/    Journal: http://www.fi.muni.cz/~kas/blog/ |
Please don't top post and in particular don't attach entire digests to your
mail or we'll all soon be using bittorrent to read the list.     --Alan Cox

^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2010-11-12  7:38 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-11-11 15:00 iptables: Resource temporarily unavailable Jan Kasprzak
2010-11-11 15:35 ` Eric Dumazet
2010-11-11 15:57   ` Patrick McHardy
2010-11-11 17:25     ` Jan Kasprzak
2010-11-11 17:58       ` Eric Dumazet
2010-11-11 18:03         ` Jan Kasprzak
2010-11-11 18:10           ` Michał Mirosław
2010-11-11 18:20           ` Eric Dumazet
2010-11-12  7:38             ` Patrick McHardy

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).