Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 9 Mar 2008 17:46:16 +0100
From:      ervin <ervin23@gmail.com>
To:        freebsd-questions@freebsd.org
Subject:   Re: IPFW - kernel: drop session / too many entries
Message-ID:  <b4d972400803090946v4411a79bh7532aeb406e0d6fc@mail.gmail.com>
In-Reply-To: <b4d972400803090650u4079683cp398b3ab272c857ae@mail.gmail.com>
References:  <b4d972400803090644t48326375l5cd5be136932e188@mail.gmail.com> <b4d972400803090650u4079683cp398b3ab272c857ae@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
solved

change the "limit src-addr x" to a reasonable higher value (for me a 2
to 4 modification made the difference)

On 09/03/2008, ervin <ervin23@gmail.com> wrote:
> I'm running
>
>  FreeBSD FreeWeb.local 6.3-RELEASE-p1 with apache2 php5 mysql5
>
>
>
>  On 09/03/2008, ervin <ervin23@gmail.com> wrote:
>  > I get this message in the /etc/security file:
>  >
>  >  Mar  9 14:24:45 FreeWeb kernel: drop session 80.198.0.217:61236 ->
>  >  192.168.1.99:80, too many entries
>  >
>  >  which causes a delay when accessing the web server (one of them is
>  >  www.valentin-jensen.org)
>  >
>  >  I have the following in my sysctl.conf:
>  >
>  >  net.inet.ip.fw.verbose=1
>  >  net.inet.ip.fw.verbose_limit=5
>  >  net.inet.ip.fw.dyn_max=8192
>  >
>  >  Any ideas ?
>  >
>  >
>  >  --
>  >
>  >  mvh/best regards  ervin
>  >
>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?b4d972400803090946v4411a79bh7532aeb406e0d6fc>