mellow
August 8, 2016, 10:28am
6
macgaiver:
What does it have to do with RAM??? It looks like amount of connections in conntrack is simply limited to half a million, and together with RAW table (firewall filter that happens before connection tracking) added to latest versions, i do not see the reason why there should be more.
memory is utilized quite well especially when you using BGP, so there are no limit of RAM usage.
Thank you for your reply. But the original post already quoted on normis. normis said the following in this thread so I assume connection tracking has something to do with RAM.
normis:
this number doesn’t automatically increase just by adding RAM, it increases based on remaining RAM, when you use most of the entries given in the number. So if your default max is 500000 with 4GB, it will be also 500000 with 16GB until you use 500000, then it will increase based on free RAM