标签:target roc rac net max read pac not ble
echo "6553500" > /proc/sys/net/nf_conntrack_max iptables -t raw -A PREROUTING -p tcp -m tcp --dport 80 -j NOTRACK iptables -t raw -A OUTPUT -p tcp -m tcp --dport 80 -j NOTRACK
原理:http://jerrypeng.me/2014/12/08/dreadful-nf-conntrack-table-full-issue/
解决nf_conntrack: table full, dropping packet问题
标签:target roc rac net max read pac not ble
原文地址:http://www.cnblogs.com/lurenjiashuo/p/nf_conntrack-table_full-dropping-packet.html