aboutsummaryrefslogtreecommitdiffstats
path: root/package/base-files
diff options
context:
space:
mode:
authorFelix Fietkau <nbd@openwrt.org>2007-06-30 02:59:09 +0000
committerFelix Fietkau <nbd@openwrt.org>2007-06-30 02:59:09 +0000
commita817b74d656e525051509ae6fd3a7e9fe3b2ad92 (patch)
treea39773ac7a0ef1c4e8c7fb4fe6e62946f59ed01a /package/base-files
parente8bd92335aee818612b6a4322933f5b7bb907c1e (diff)
downloadupstream-a817b74d656e525051509ae6fd3a7e9fe3b2ad92.tar.gz
upstream-a817b74d656e525051509ae6fd3a7e9fe3b2ad92.tar.bz2
upstream-a817b74d656e525051509ae6fd3a7e9fe3b2ad92.zip
unify sysctl.conf, add extra netfilter options (#1996)
git-svn-id: svn://svn.openwrt.org/openwrt/trunk@7784 3c298f89-4303-0410-b956-a3cf2f4a3e73
Diffstat (limited to 'package/base-files')
-rw-r--r--package/base-files/files/etc/sysctl.conf13
1 files changed, 13 insertions, 0 deletions
diff --git a/package/base-files/files/etc/sysctl.conf b/package/base-files/files/etc/sysctl.conf
new file mode 100644
index 0000000000..4ad2ab2c2f
--- /dev/null
+++ b/package/base-files/files/etc/sysctl.conf
@@ -0,0 +1,13 @@
+kernel.panic=3
+net.ipv4.conf.default.arp_ignore=1
+net.ipv4.conf.all.arp_ignore=1
+net.ipv4.ip_forward=1
+net.ipv4.icmp_echo_ignore_broadcasts=1
+net.ipv4.icmp_ignore_bogus_error_responses=1
+net.ipv4.tcp_fin_timeout=30
+net.ipv4.tcp_keepalive_time=120
+net.ipv4.tcp_syncookies=1
+net.ipv4.tcp_timestamps=0
+net.ipv4.netfilter.ip_conntrack_tcp_timeout_established=3600
+net.ipv4.netfilter.ip_conntrack_udp_timeout=60
+net.ipv4.netfilter.ip_conntrack_udp_timeout_stream=180