先看一下文章解釋:
http://jerrypeng.me/2014/12/08/dreadful-nf-conntrack-table-full-issue/
我處理方案如下:
穩妥的臨時處理辦法:
vi /etc/sysctl.conf net.nf_conntrack_max = 2097152 net.netfilter.nf_conntrack_tcp_timeout_established = 300 net.netfilter.nf_conntrack_max = 1048576 net.netfilter.nf_conntrack_tcp_timeout_close_wait = 60 net.netfilter.nf_conntrack_tcp_timeout_fin_wait = 120 net.netfilter.nf_conntrack_tcp_timeout_time_wait = 120 net.ipv4.conf.default.forwarding = 1 sysctl -p
echo 50000 > /sys/module/nf_conntrack/parameters/hashsize echo 524288 > /proc/sys/net/netfilter/nf_conntrack_max
vim /etc/rc.local echo 524288 >/proc/sys/net/netfilter/nf_conntrack_max
問題解決
參考文檔:
http://jerrypeng.me/2014/12/08/dreadful-nf-conntrack-table-full-issue/