ipfw: install_state: Too many dynamic rules



  • I use the captive portal feature in the opt1 interface(connect to a wifi ap).
    I got the same issues as the post (http://forum.pfsense.org/index.php/topic,3559.0.html)

    And I do sysctl net.inet.ip.fw.dyn_buckets=2048
    However, it seems that this setting no effect

    sysctl show
    sysctl net.inet.ip.fw.curr_dyn_buckets=256
    sysctl net.inet.ip.fw.dyn_buckets=2048

    my question: How to activate this setting and allow him to retain permanent , I try to edit /ect/sysctl.conf,  but useless.



  • You're missing what version your running so I checked on my 1.3-AA, but it seems that those are not exist anymore…I only found below.


    sysctl net.inet.ip.fw.curr_dyn_buckets=256

    sysctl: unknown oid 'net.inet.ip.fw.curr_dyn_buckets'

    sysctl net.inet.ip.fw.dyn_buckets=2048

    sysctl: unknown oid 'net.inet.ip.fw.dyn_buckets'

    sysctl -a|grep bucket

    net.inet.tcp.hostcache.bucketlimit: 30
    net.inet.tcp.syncache.bucketlimit: 30

    Are those still exist in 1.2* ? Then how about to put those into /boot/loader.conf, or very end of /etc/rc ??

    cheers,



  • @nocer:

    You're missing what version your running so I checked on my 1.3-AA, but it seems that those are not exist anymore…I only found below.


    sysctl net.inet.ip.fw.curr_dyn_buckets=256

    sysctl: unknown oid 'net.inet.ip.fw.curr_dyn_buckets'

    sysctl net.inet.ip.fw.dyn_buckets=2048

    sysctl: unknown oid 'net.inet.ip.fw.dyn_buckets'

    sysctl -a|grep bucket

    net.inet.tcp.hostcache.bucketlimit: 30
    net.inet.tcp.syncache.bucketlimit: 30

    Are those still exist in 1.2* ? Then how about to put those into /boot/loader.conf, or very end of /etc/rc ??

    cheers,

    Thanks for your help , my pfsense version is 1.2.1 rc3.
    If you want to see sysctl net.inet.ip.fw.dyn_buckets , you need use the captive portal feature.
    I cannot active the change of value by(set in shell, /boot/loader.conf /etc/rc)


Locked