tis 2003-02-11 klockan 20.20 skrev Mike Rambo:

> suggesting to set that parameter higher). The real problem was ipchains.
> Basically you can't use it - at least by itself although our consultant
> says that augmenting ipchains with tproxy will work. Last night we moved

Linux-2.4 ipchains emulation REDIRECT target is broken in Linux-2.4.0 to
Linux-2.4.18 or somewhere around there, giving a kernel memory leak
successive decrading the system performance down to complete lockup...
see the Linux kernel changelogs for exact version as I do not remember
or care. iptables should be used on Linux-2.4 as iptables is the native
packet filtering and NAT framework for Linux-2.4 and using the barely
maintained ipchains emulation is only begging for problems.

-- 
Henrik Nordstrom <[EMAIL PROTECTED]>
MARA Systems AB, Sweden

Reply via email to