LVS
lvs-users
Google
 
Web LinuxVirtualServer.org

Re: new question - iptables on LB and connection limit?

To: "LinuxVirtualServer.org users mailing list." <lvs-users@xxxxxxxxxxxxxxxxxxxxxx>
Subject: Re: new question - iptables on LB and connection limit?
From: lists <lists@xxxxxxxxxxxxxxxx>
Date: Tue, 14 Nov 2006 18:51:10 +0000
Larry Ludwig wrote:
My question, what's the best setup of an iptables firewall to use with with 
LVS-DR?  Does iptables have some connection limit per IP that automaticly 
blocks a connection after a large amount of requests (in our case apachebench 
is coming from one IP)
Yes, you'll run out of ports for a start and file descriptors on the client.... But LVS has it's own hash related issues, you need to test from multiple source ip's.
2.  Also we seem to max out at 30k connections on our testing, and appears to 
be some hard limit withing ipvsadm?  How can we increase this?  The server has 
2GB of RAM (I know way too much but bought all hardware in bulk) so it has 
plenty of ram.  No matter how many connectons we throw at it using apachebench 
we can't get it past that #.

Pretty similar results to this earlier posting, sounds like it's just a feature:
http://archive.linuxvirtualserver.org/html/lvs-users/2006-07/msg00025.html

Regards,
Malcolm.



<Prev in Thread] Current Thread [Next in Thread>