[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: problems with obsd 3.1



On Fri, 21 Jun 2002, OpenBSD mailing user :: JGM wrote:

> hi, I have problems with my firewall (obsd 3.1), when the 'States' (pfctl -sa
> | grep States) up to 14000, the machine freeze, and I not have any log of
> errors in /var/log/messages, only freeze and I push button reset and boot again.

Any specific kernel panic?

> anyboduy know?

Okay, to have more then 14000 you should add more RAM (64 MB is too
little). You could prevent the memory exhaustion by setting a maximum
number of states.

pfctl -m states=14000

According to Daniel's USENIX presentation you should be able to handle
64000 states with 64 MB RAM. Strange ...


Cheers,

Dries
-- 
Dries Schellekens
email: gwyllion@ulyssis.org