Size: a a a

2018 February 02

DF

Denys Fedoryshchenko in Accel-PPP
how many rules in total in iptables?
источник

DF

Denys Fedoryshchenko in Accel-PPP
approx
источник

MG

Marcelo Gondim in Accel-PPP
Right now I'm not in trouble. They happen later.
источник

MG

Marcelo Gondim in Accel-PPP
источник

MG

Marcelo Gondim in Accel-PPP
I'm thinking of removing the conntrack and putting it to another location.
источник

MG

Marcelo Gondim in Accel-PPP
Deny, Do you have any rules to completely disable conntrack?
источник

DF

Denys Fedoryshchenko in Accel-PPP
iptables -t raw -I PREROUTING -p udp —dport 137 -j CT —notrack
источник

DF

Denys Fedoryshchenko in Accel-PPP
for example like this
but sure dont forget at start
iptables -r taw -F
источник

MG

Marcelo Gondim in Accel-PPP
137/udp?
источник

DF

Denys Fedoryshchenko in Accel-PPP
i was doing that against flooding bot
источник

DF

Denys Fedoryshchenko in Accel-PPP
so i bypassed conntrack for specific flood i had
источник

MG

Marcelo Gondim in Accel-PPP
ah ok
источник

DF

Denys Fedoryshchenko in Accel-PPP
also i suggest to disable MASQUERADE and put SNAT
источник

DF

Denys Fedoryshchenko in Accel-PPP
MASQUERADE is very cpu intensive
источник

DF

Denys Fedoryshchenko in Accel-PPP
if you have many interfaces (and you have, in pppoe)
источник

MG

Marcelo Gondim in Accel-PPP
ummmm OK
источник

y

yazero in Accel-PPP
доброго дня.
может кто быстро вспомнит,  есть проблема
на 10G карте с fdir_math/miss  (счетчики растут)

с fdir_math разобрался ,согласно доки нужно было выключить ATR .  ethtool -K eth0  ntuple on

а вот с fdir_miss , как я понял это неверное расспределение по ядрам.
источник

MG

Marcelo Gondim in Accel-PPP
I´m using:
источник

MG

Marcelo Gondim in Accel-PPP
/sbin/ethtool -A eth2 tx off rx off autoneg off
/sbin/ethtool -A eth3 tx off rx off autoneg off
источник

MG

Marcelo Gondim in Accel-PPP
no problem?
источник