Conntrack timeout

Pablo Neira Ayuso pablo at
Fri Nov 10 01:37:28 CET 2006

mael.boutin at wrote:
>> You can change them via:
>> - /proc/sys/net/ipv4/netfilter/ip_conntrack_[tcp|udp]_*
>> - conntrack tool/libnetfilter_conntrack library
> In fact i m tracking ipv6 connections. Therefore the first one
> is not available (i m using nf_conntrack)

check /proc/sys/net/netfilter/nf_conntrack_*

The dawn of the fourth age of Linux firewalling is coming; a time of
great struggle and heroic deeds -- J.Kadlecsik got inspired by J.Morris

More information about the netfilter mailing list