what happens after ip_conntrack_max is reached?

Lihua Yuan lihua.yuan at gmail.com
Tue Nov 29 10:49:03 CET 2005


Hi,
    I'm wondering what happens after ip_conntrack_max is reached?
Reading the archive, I understand the UNREPLIED entries are removed in
favor of new connection. But other than that, it seems that new
connections will simply be dropped?  If this is the case, then new
clients might not be able to make a connection at all?


thanks for your help
Lihua



More information about the netfilter mailing list