Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 17 May 1998 22:38:54 +0100
From:      Karl Pielorz <kpielorz@tdx.co.uk>
To:        MP <mlistbsd@icorp.net>
Cc:        freebsd-questions@FreeBSD.ORG
Subject:   Re: too many open files problem
Message-ID:  <355F58EE.1A59667A@tdx.co.uk>
References:  <3.0.1.32.19980517145521.0069e5b4@icorp.net>

next in thread | previous in thread | raw e-mail | index | archive | help
MP wrote:
> 
> Greetings,
> 
> I'm running into a problem with FreeBSD 2.2.6.
> 
> I have two Class C's on my network and recently a hacker tunnelled into the
> backbone and masqueraded under an unused IP in my subnet to do spamming.
> As a result, I opted to bind all my IP addresses - used or not, to one of
> my servers.  So I have about 400 or so IPs bound.  When I boot FBSD 2.2.6,
> everything works, but if I -HUP the nameserver, I get this in the messages
> log:
> 
> May 17 14:29:37 mysys named[1266]: starting.  named 4.9.6-REL Wed Mar 25
> 00:29:
> 44 GMT 1998     jkh@time.cdrom.com:/usr/obj/usr/src/usr.sbin/named
> May 17 14:29:37 mysys named[1266]: fcntl(dfd, F_DUPFD, 20): Too many open
> files
> May 17 14:29:37 mysys last message repeated 15 times

Hi,

How did they manage to 'masquerade' on your network? - It may be easier /
better to block that (i.e. drop sourceroutes, firewall modem users from your
own machines etc.) - than binding all the addresses...

If you look in your kernel - and see how many 'USERS' the kernel is set to,
this is the 'easy' way to increase the total number of files available... If
that's not at 256 try setting it to 256, otherwise theres a few other things
you can do - which someone else will probably suggest...

Regards,

Karl Pielorz

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?355F58EE.1A59667A>