Difference between revisions of "OpenVZ"
From WA2IAC Wiki
m (→/etc/sysctl.conf) |
|||
Line 122: | Line 122: | ||
net.ipv4.conf.default.send_redirects = 1 | net.ipv4.conf.default.send_redirects = 1 | ||
net.ipv4.conf.all.send_redirects = 0 | net.ipv4.conf.all.send_redirects = 0 | ||
+ | </pre> | ||
+ | |||
+ | ===== CentOS 6.4 sysctl.conf Example ===== | ||
+ | Here is an example of a currently used CentOS 6.4 sysctl.conf file, but don't just paste this in blindly! YMMV! This is indended only as an example of a completed edit. | ||
+ | |||
+ | <pre> | ||
+ | # Kernel sysctl configuration file for Red Hat Linux | ||
+ | # | ||
+ | # For binary values, 0 is disabled, 1 is enabled. See sysctl(8) and | ||
+ | # sysctl.conf(5) for more details. | ||
+ | |||
+ | # Controls IP packet forwarding | ||
+ | net.ipv4.ip_forward = 1 | ||
+ | net.ipv6.conf.default.forwarding = 1 | ||
+ | net.ipv6.conf.all.forwarding = 1 | ||
+ | net.ipv4.conf.default.proxy_arp = 0 | ||
+ | |||
+ | # We do not want all our interfaces to send redirects | ||
+ | net.ipv4.conf.default.send_redirects = 1 | ||
+ | net.ipv4.conf.all.send_redirects = 0 | ||
+ | |||
+ | # Controls source route verification | ||
+ | net.ipv4.conf.default.rp_filter = 1 | ||
+ | |||
+ | # Do not accept source routing | ||
+ | net.ipv4.conf.default.accept_source_route = 0 | ||
+ | |||
+ | # Controls the System Request debugging functionality of the kernel | ||
+ | kernel.sysrq = 1 | ||
+ | |||
+ | # Controls whether core dumps will append the PID to the core filename. | ||
+ | # Useful for debugging multi-threaded applications. | ||
+ | kernel.core_uses_pid = 1 | ||
+ | |||
+ | # Controls the use of TCP syncookies | ||
+ | net.ipv4.tcp_syncookies = 1 | ||
+ | |||
+ | # Disable netfilter on bridges. | ||
+ | net.bridge.bridge-nf-call-ip6tables = 0 | ||
+ | net.bridge.bridge-nf-call-iptables = 0 | ||
+ | net.bridge.bridge-nf-call-arptables = 0 | ||
+ | |||
+ | # Controls the default maxmimum size of a mesage queue | ||
+ | kernel.msgmnb = 65536 | ||
+ | |||
+ | # Controls the maximum size of a message, in bytes | ||
+ | kernel.msgmax = 65536 | ||
+ | |||
+ | # Controls the maximum shared segment size, in bytes | ||
+ | kernel.shmmax = 68719476736 | ||
+ | |||
+ | # Controls the maximum number of shared memory segments, in pages | ||
+ | kernel.shmall = 4294967296 | ||
</pre> | </pre> | ||