I don't know very much about kernel config. Now I rebuild my kernel with max ip_sets = 2048 (It is much more, that i need:) ).
It works now good with about 310 ipsets. Thank you!!! On 2 June 2015 at 20:21, Fabrice Durand <[email protected]> wrote: > It is supposed to be dynamic. > Also you can change this value by adding a kernel option parameter. > > > > Le 2 juin 2015 13:12:36 GMT-04:00, Dima Ermakov <[email protected]> a > écrit : >> >> Now "cat max_sets" returns "0" >> >> >> On 2 June 2015 at 20:07, Durand fabrice <[email protected]> wrote: >> >>> Check in /sys/module/ip_set/parameters/max_sets >>> >>> Regards >>> Fabrice >>> >>> >>> >>> Le 2015-06-02 13:02, Dima Ermakov a écrit : >>> >>> Thank you for your patch. >>> Now I have another problem: kernel ipset limit. >>> I will recompile my kernel with maximum ipset = 1024 (now is 256). >>> After this, I wii try your patch. >>> >>> On 2 June 2015 at 16:10, Durand fabrice <[email protected]> wrote: >>> >>>> Nothing really interesting in the log. >>>> Try that, i did a patch for inline layer 2. >>>> >>>> https://github.com/inverse-inc/packetfence/commit/c3cf7ea6976ec802bf119e640ecc42dfe9b070f7 >>>> >>>> >>>> Le 2015-06-02 08:53, Dima Ermakov a écrit : >>>> >>>> It is my logs. >>>> >>>> On 2 June 2015 at 15:45, Durand fabrice <[email protected]> wrote: >>>> >>>>> In fact i m just able to replicate with an inline l2 interface not >>>>> with inline layer 3. >>>>> Can you send me what you have in httpd.admin.log and >>>>> httpd.admin.catalyst ? >>>>> >>>>> Regards >>>>> Fabrice >>>>> >>>>> >>>>> >>>>> Le 2015-06-02 08:30, Durand fabrice a écrit : >>>>> >>>>> You are true, there is a bug. >>>>> Let me check the code and i will reply with a patch. >>>>> >>>>> Regards >>>>> Fabrice >>>>> >>>>> Le 2015-06-02 08:16, Dima Ermakov a écrit : >>>>> >>>>> Thank you! >>>>> It works good. >>>>> >>>>> >>>>> But if I try add network from web interface and write in DNS this >>>>> string (10.0.20.1,10.0.20.2,10.0.36.1) I have "Should match the IP of a >>>>> registration interface or the production DNS server if the network is >>>>> Inline L3" error. May be it is bug? >>>>> I use PF 5.0.0 now. >>>>> >>>>> On 2 June 2015 at 14:54, Durand fabrice <[email protected]> wrote: >>>>> >>>>>> Hi Dima, >>>>>> >>>>>> really simple, just do that: >>>>>> >>>>>> dns=10.0.20.1,10.0.20.2,10.0.20.3 >>>>>> >>>>>> and pfcmd service dhcpd restart >>>>>> >>>>>> Regards >>>>>> Fabrice >>>>>> >>>>>> >>>>>> >>>>>> Le 2015-06-02 07:10, Dima Ermakov a écrit : >>>>>> >>>>>> Good day! >>>>>> This is part of my networks.conf file. >>>>>> Can I add second DNS server to this network definition? >>>>>> >>>>>> [10.0.0.0] >>>>>> dns=10.0.20.1 >>>>>> next_hop=10.0.1.10 >>>>>> gateway=10.0.0.1 >>>>>> dhcp_start=10.0.0.11 >>>>>> domain-name=inlinel3.mydomain.com >>>>>> nat_enabled=0 >>>>>> named=enabled >>>>>> dhcp_max_lease_time=21600 >>>>>> dhcpd=enabled >>>>>> fake_mac_enabled=0 >>>>>> netmask=255.255.255.0 >>>>>> type=inlinel3 >>>>>> dhcp_end=10.0.0.254 >>>>>> dhcp_default_lease_time=21600 >>>>>> >>>>>> Thank you! >>>>>> Dmitriy Ermakov. >>>>>> -- >>>>>> С уважением, Дмитрий Ермаков. >>>>>> >>>>>> >>>>>> >>>>>> ------------------------------------------------------------------------------ >>>>>> >>>>>> >>>>>> >>>>>> _______________________________________________ >>>>>> PacketFence-users mailing >>>>>> [email protected]https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>>>> >>>>>> >>>>>> >>>>>> >>>>>> ------------------------------------------------------------------------------ >>>>>> >>>>>> _______________________________________________ >>>>>> PacketFence-users mailing list >>>>>> [email protected] >>>>>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>>>> >>>>>> >>>>> >>>>> >>>>> -- >>>>> С уважением, Дмитрий Ермаков. >>>>> >>>>> >>>>> ------------------------------------------------------------------------------ >>>>> >>>>> >>>>> >>>>> _______________________________________________ >>>>> PacketFence-users mailing >>>>> [email protected]https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>>> >>>>> >>>>> >>>>> >>>>> ------------------------------------------------------------------------------ >>>>> >>>>> >>>>> >>>>> _______________________________________________ >>>>> PacketFence-users mailing >>>>> [email protected]https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>>> >>>>> >>>>> >>>>> >>>>> ------------------------------------------------------------------------------ >>>>> >>>>> _______________________________________________ >>>>> PacketFence-users mailing list >>>>> [email protected] >>>>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>>> >>>>> >>>> >>>> >>>> -- >>>> С уважением, Дмитрий Ермаков. >>>> >>>> >>>> ------------------------------------------------------------------------------ >>>> >>>> >>>> >>>> _______________________________________________ >>>> PacketFence-users mailing >>>> [email protected]https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>> >>>> >>>> >>>> >>>> ------------------------------------------------------------------------------ >>>> >>>> _______________________________________________ >>>> PacketFence-users mailing list >>>> [email protected] >>>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>>> >>>> >>> >>> >>> -- >>> С уважением, Дмитрий Ермаков. >>> >>> >>> ------------------------------------------------------------------------------ >>> >>> >>> >>> _______________________________________________ >>> PacketFence-users mailing >>> [email protected]https://lists.sourceforge.net/lists/listinfo/packetfence-users >>> >>> >>> >>> >>> ------------------------------------------------------------------------------ >>> >>> _______________________________________________ >>> PacketFence-users mailing list >>> [email protected] >>> https://lists.sourceforge.net/lists/listinfo/packetfence-users >>> >>> >> >> > -- > Envoyé de mon téléphone Android avec K-9 Mail. Excusez la brièveté. > > > ------------------------------------------------------------------------------ > > _______________________________________________ > PacketFence-users mailing list > [email protected] > https://lists.sourceforge.net/lists/listinfo/packetfence-users > > -- С уважением, Дмитрий Ермаков.
------------------------------------------------------------------------------
_______________________________________________ PacketFence-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/packetfence-users
