[CentOS] IPTABLES --hitcount maximum value

Dirk H. Schulz dirk.schulz at kinzesberg.de
Tue Dec 22 16:38:48 UTC 2009


James B. Byrne schrieb:
> Is the maximum permitted value for --hitcount documented anywhere? 
> I reliably get a iptables-restore error when I specify a hitcount
> value greater than 20 
That is a new "phenomenon" I also ran into. You now have to adjust 
memory values.

I have added to my /etc/modprobe.conf
"options ipt_recent ipt_pkt_list_tot=75"
Now I can use hitcount values of 50 (did not test if the above is 
sufficient for higher values).


