Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 31 May 2006 10:44:31 -0400
From:      Lowell Gilbert <freebsd-questions-local@be-well.ilk.org>
To:        "Iantcho Vassilev" <ianchov@gmail.com>
Cc:        FreeBSD Mailing List <freebsd-questions@freebsd.org>
Subject:   Re: kern.ipc.somaxconn should be high for a PF firewall with a lot of states
Message-ID:  <44ac8y1cfk.fsf@be-well.ilk.org>
In-Reply-To: <18e02bd30605290545j1c9cceebwedc8d28bbf270e11@mail.gmail.com> (Iantcho Vassilev's message of "Mon, 29 May 2006 15:45:20 %2B0300")
References:  <18e02bd30605290545j1c9cceebwedc8d28bbf270e11@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
"Iantcho Vassilev" <ianchov@gmail.com> writes:

> kern.ipc.somaxconn is for handling more incoming connections,right?

Well, kind of.  It's a systemwide limit on the maximum number of
connections that a given socket can accept.

>                                                                     but does
> firewall connections are considered incoming?

No, not really.  But the question doesn't really make sense.  What are
you trying to do?

-- 
Lowell Gilbert, embedded/networking software engineer, Boston area
		http://be-well.ilk.org/~lowell/



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?44ac8y1cfk.fsf>