[fw-wiz] Linux ARPD -- neighbor table overflow

From: Jeff Adam (jadam_at_seark.edu)
Date: 03/19/04

  • Next message: Chris Doyle: "Re: [fw-wiz] Linux ARPD -- neighbor table overflow"
    To: <firewall-wizards@honor.icsalabs.com>
    Date: Thu, 18 Mar 2004 17:12:07 -0600
    
    

    I have run into a problem recently with arp table size limitation in the Linux kernel.

     

    A bit of History

     I have been using the same box as a firewall for past couple of years and it has performed flawlessly Linux 2.4 / iptables but every couple of months the number of nodes on the LAN increases by 20 to 60 usually on the high end of that range we are already beyond 500 computers approaching 600 with plans to add 40 to 60 additional computers already being discussed. We have recently developed a problem with neighbor table overflows on the firewall during peak hours.

     

    I believe I have the problem repaired I recompiled the kernel with arpd support and netlink and installed arpd and made some changes in /proc

    Some other issues developed with arpd that were unexpected
     

    the problem is all of the documentation I found on arpd was rather dated including one written in 2001 that claimed the package (arpd) was far beyond abandoned by the upstream maintainer. im sure networks with more than 256 nodes are not that uncommon. My question is what experiences have other readers of the list had with this issue and what other solutions are there besides arpd for this issue.

    ~*ŢÁŠeÂ,Ú­Ű&j)bž b~*ŢÁŠeÂ,Ú­Ű!˘z+‰Ë•Śě†Űi˙řhžŠârĆĽiť˘oćj)fjĺŠËbú?~*ŢÁŠeÂ,Ú


  • Next message: Chris Doyle: "Re: [fw-wiz] Linux ARPD -- neighbor table overflow"

    Relevant Pages

    • Re: [fw-wiz] Linux ARPD -- neighbor table overflow
      ... > Linux kernel. ... > table overflows on the firewall during peak hours. ... > I believe I have the problem repaired I recompiled the kernel with arpd ... Paul D. Robertson "My statements in this message are personal opinions ...
      (Firewall-Wizards)
    • Re: Allocating kernel memory
      ... > Linux kernel uses are not the same thing. ... That is not a limitation in Linux. ... AMD64 is the only x86 compatible architecture without ... dual Xeon IBM servers, ...
      (comp.os.linux.development.system)
    • Re: Linux kernel history from 0.0.1
      ... Linux-activists ending in 1993 and Linux Kernel from 1998. ... (I find it amazing that five whole years of history have disappeared ... More majordomo info at http://vger.kernel.org/majordomo-info.html ...
      (Linux-Kernel)
    • Re: Linux Kernel Story
      ... Important linux kernel bugs, fixes that were available those bugs. ... How about asking what happened from Windows 1.0 to today. ... Should it also include the history of DOS from ... It really is a silly question to ask that is much too vague. ...
      (Linux-Kernel)
    • Re: X.25 support on Linux
      ... Ask your vendor. ... Linux kernel itself has long history of X.25 support. ...
      (Linux-Kernel)