Re: [lvs-users] Performance issues and optimization UDP LVS-NAT

To: Julian Anastasov <ja@xxxxxx>
Subject: Re: [lvs-users] Performance issues and optimization UDP LVS-NAT
Cc: lvs-users@xxxxxxxxxxxxxxxxxxxxxx
From: Marco Lorig <mlorig@xxxxxxx>
Date: Tue, 17 Mar 2020 19:51:16 +0100

Am 17.03.2020 um 16:02 schrieb Julian Anastasov:
>>>     Yes, when nf_conntrack is used it would be better to
>>> set /proc/sys/net/ipv4/vs/conntrack to 1, as reported by different
>>> users, for example:
>>>     In this case, you have to increase nf_conntrack_max sysctl var
>>> to allow the desired number of conntracks to be created.
>> Ok, i will give it a try. nf_conntrack_max is set to 262144 (default?).
>> I would set it to 1024000. Do you have any recommondation for this
>> value? ip_vs_conn shows 18753 entries.
>       Make sure nf_conntrack_count does not reach the nf_conntrack_max
> value.

Done. At the moment about 2400 VPN Clients are connected but
nf_conntrack_count is still 0. nf_conntrack_max is set on module load
but net.ipv4.vs.conntrack=1 is set AFTER ipvs config is loaded.

VPN is only UDP500/4500.

regards Marco

Please read the documentation before posting - it's available at: mailing list - lvs-users@xxxxxxxxxxxxxxxxxxxxxx
Send requests to lvs-users-request@xxxxxxxxxxxxxxxxxxxxxx
or go to

<Prev in Thread] Current Thread [Next in Thread>