whoooaaaaa.... hold on boys... let me explain what you are doing to your
baby... comments below

----- Original Message -----
From: "Jimmy Lim" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Friday, February 01, 2002 3:00 PM
Subject: [plug] Re: FreeBSD-4.5-RELEASE | was Re: Redirecting output to file


> Victor Tayer writes:
>
> > dagdag mo pa ito sa /etc/sysctl.conf
> > vfs.vmiodirenable=1

by default fbsd 4.5 already enable this.. you just enable this if you have
directory that have lots of files in it... for example squid cache
directories

> > kern.ipc.somaxconn=4096

this is too much for TCP listening queue... you have to lower this to avoid
SYN flood attack despite the fact that fbsd 4.5 already have tcp syncookie
and syncache.

> > kern.maxfiles=65536

this is too much again... you are only wasting memory space here... maxfiles
is for number of open filedescriptor... on our heavy loaded and busy proxy
server, it cant even consume 8192 maxfiles or filedescriptor.... same true
with squid at cache-off with a request of 160 request per second, it cant
consume 16384 maxfiles

> wag mo kalimot syempre ang
> kern.maxfilesperproc=65535

same with maxfiles but be conservative with your tweaks in order to give
more memory to other areas

> para lalung humataw!
> >
> > den enable mo pa softupdates naku! grabe hehe...

actually since fbsd 2.x i think, its already supported softupdates but by
default its disable... one of the biggest improvement in ther ufs filesystem
is the UFS_DIRHASH implementation which increase its searching time at the
expense of some memory and worth mentioning too that disk block increase
from 8k to 16k  which gives a better improvement on the average of file size
today compare from years ago..

> >
> > Jimmy Lim wrote:
> >
> >> Victor Tayer writes:
> >>
> >> > hehe. been using fbsd 4.5-RC since the first few days of jan this
year. and it really rocks! ufs+softupdates is
> >> > awesome.
> >> lalu na pag na tune mo pa ang kernel
> >>
> >> maxusers = 512

you only increase this if you have lots of users telneting and sshing to
your server... right now fbsd 4.5 supports maxusers 0 which will dynamically
allocate space in case in need of.

> >> options NMBCLUSTERS=65536

whooaaaaa this is too much again ... i only set this to 32768 to our heavy
loaded and busy proxy server ... to know how much does your server consumes
nmbclusters, run netstat -mb

> >> #ICMP_BANLIM #disabled
> >> bilis ng connexion!

icmp banlim or icmp rate limiting is nothing to do with your network
transfer speed except for icmp :->  the reason why fbsd 4.5 improve its
network stack is due to tcp.sendspace from 16384 to 32768 and tcp.recvspace
from 16384 to 65535 and also to avoid increase in congestion, the value of
net.inet.tcp.local_slowstart_flightsize from infinity change to 4.. plus
there is a bug fix on tcp implementation to eliminate stall connection..

and there are lots lots more to tuning but i cant say all it here :-> so
next time if you want to rape your baby.. dahan dahanin nyo and be gentle
kasi nasaktan na sya sa ginawa nyo sa abusive tweaks... :->

fooler.

_
Philippine Linux Users Group. Web site and archives at http://plug.linux.org.ph
To leave: send "unsubscribe" in the body to [EMAIL PROTECTED]

To subscribe to the Linux Newbies' List: send "subscribe" in the body to 
[EMAIL PROTECTED]

Reply via email to