diff options
author | Felix Fietkau <nbd@openwrt.org> | 2007-06-30 02:59:09 +0000 |
---|---|---|
committer | Felix Fietkau <nbd@openwrt.org> | 2007-06-30 02:59:09 +0000 |
commit | 9bf6078866b29e9dc89374c79cc750390e73f95c (patch) | |
tree | 2cd8b65093b8eed671831cd5ecf00329fd38e4c2 /package/base-files/files | |
parent | 8c0de1732204b0a29ba09b2881b6bf4f9883493d (diff) | |
download | upstream-9bf6078866b29e9dc89374c79cc750390e73f95c.tar.gz upstream-9bf6078866b29e9dc89374c79cc750390e73f95c.tar.bz2 upstream-9bf6078866b29e9dc89374c79cc750390e73f95c.zip |
unify sysctl.conf, add extra netfilter options (#1996)
SVN-Revision: 7784
Diffstat (limited to 'package/base-files/files')
-rw-r--r-- | package/base-files/files/etc/sysctl.conf | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/package/base-files/files/etc/sysctl.conf b/package/base-files/files/etc/sysctl.conf new file mode 100644 index 0000000000..4ad2ab2c2f --- /dev/null +++ b/package/base-files/files/etc/sysctl.conf @@ -0,0 +1,13 @@ +kernel.panic=3 +net.ipv4.conf.default.arp_ignore=1 +net.ipv4.conf.all.arp_ignore=1 +net.ipv4.ip_forward=1 +net.ipv4.icmp_echo_ignore_broadcasts=1 +net.ipv4.icmp_ignore_bogus_error_responses=1 +net.ipv4.tcp_fin_timeout=30 +net.ipv4.tcp_keepalive_time=120 +net.ipv4.tcp_syncookies=1 +net.ipv4.tcp_timestamps=0 +net.ipv4.netfilter.ip_conntrack_tcp_timeout_established=3600 +net.ipv4.netfilter.ip_conntrack_udp_timeout=60 +net.ipv4.netfilter.ip_conntrack_udp_timeout_stream=180 |