netdev
[Top] [All Lists]

limited number if iptable rules on 64bit hosts

To: netdev@xxxxxxxxxxx
Subject: limited number if iptable rules on 64bit hosts
From: Olaf Hering <olh@xxxxxxx>
Date: Wed, 2 Feb 2005 14:38:51 +0100
Sender: netdev-bounce@xxxxxxxxxxx
User-agent: Mutt und vi sind doch schneller als Notes (und GroupWise)
What buffer or sysctrl value has to change to allow more than 3445 rules
like this (on a 64bit host with 64bit iptables)?

iptables -A FORWARD -j ACCEPT

setsockopt(3, SOL_IP, 0x40 /* IP_??? */,
"filter\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0"..., 524368) =
-1 ENOMEM (Cannot allocate memory)

I see this with 2.6.5 and 2.6.11.

<Prev in Thread] Current Thread [Next in Thread>