From 58692d5c98169249eae7b8cb27b45ce6ecac1d92 Mon Sep 17 00:00:00 2001 From: coolsnowwolf Date: Sun, 20 Nov 2022 22:14:41 +0800 Subject: [PATCH] kernel: sysctl: update nf_ct settings for fullcone nat --- package/kernel/linux/files/sysctl-nf-conntrack.conf | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/package/kernel/linux/files/sysctl-nf-conntrack.conf b/package/kernel/linux/files/sysctl-nf-conntrack.conf index c16167fb4..897cac86c 100644 --- a/package/kernel/linux/files/sysctl-nf-conntrack.conf +++ b/package/kernel/linux/files/sysctl-nf-conntrack.conf @@ -7,4 +7,6 @@ net.netfilter.nf_conntrack_max=65535 net.netfilter.nf_conntrack_tcp_timeout_established=7440 net.netfilter.nf_conntrack_udp_timeout=60 net.netfilter.nf_conntrack_udp_timeout_stream=180 -net.netfilter.nf_conntrack_helper=1 \ No newline at end of file +net.netfilter.nf_conntrack_helper=1 +net.netfilter.nf_conntrack_buckets=16384 +net.netfilter.nf_conntrack_expect_max=512