Summary: | Improve "ipfw: add_dyn_rule: Cannot allocate rule" log message user experience | ||
---|---|---|---|
Product: | Documentation | Reporter: | me |
Component: | Books & Articles | Assignee: | Alexander V. Chernikov <melifaro> |
Status: | Closed FIXED | ||
Severity: | Affects Only Me | CC: | crees, emaste, koobs, melifaro |
Priority: | --- | Keywords: | easy |
Version: | Latest | ||
Hardware: | Any | ||
OS: | Any |
Description
me
2014-09-04 02:31:37 UTC
Thank you for your report Nilesh! This was originally introduced in r243707. [1] Probably a good opportunity to clarify the LOG_DEBUG message, possibly with a mention of net.inet.ip.fw.dyn_max sysctl tunable or similar. Perhaps also worth revisiting the default value for this tunable as well. CC'ing original committer (melifaro@) who likely has an expert opinion :) [1] https://svnweb.freebsd.org/base?view=revision&revision=243707 MFC candidate. A commit references this bug: Author: melifaro Date: Fri Oct 24 13:57:16 UTC 2014 New revision: 273588 URL: https://svnweb.freebsd.org/changeset/base/273588 Log: Bump default dynamic limit to 16k entries. Print better log message when limit is hit. PR: 193300 Submitted by: me at nileshgr.com Changes: head/sys/netpfil/ipfw/ip_fw_dynamic.c Close bug and assign as fixed. |