Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 18 May 2011 13:03:14 +0200
From:      "quentin.narvor" <quentin.narvor@ensi-bourges.fr>
To:        <freebsd-pf@freebsd.org>
Subject:   Large table issue
Message-ID:  <390946c3b25ae3d887574555a494cb42@ensi-bourges.fr>

next in thread | raw e-mail | index | archive | help
 I am trying to detect problems on hosts in my network : I want to 
 detect when a communication occurs with a compromised host.
 I have built a blacklist which holds near 2 millions ip (spam, 
 malware.... hosts).

 But I can't load it into pf, I get this when I try :

      /etc/pf.conf:6: cannot define table bl: Cannot allocate memory
      pfctl: Syntax error in config file: pf rules not loaded

 I suspect there is a memory limitation somewhere (in the kernel ??) 
 which prevent me from loading the table but I am not very comfortable 
 with kernel variables.
 I have already try modifying kern.maxssiz and kern.dflsiz without 
 success.

 Any idea?



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?390946c3b25ae3d887574555a494cb42>