# /etc/sysctl.conf: kernel parameters configuration file # $Header: /home/cvsd/magellan-cvs/magellan-src/magellan-initscripts/etc/sysctl.conf,v 1.3 2007-07-21 19:32:04 niro Exp $ # # For more information on how this file works, please see # the manpages sysctl(8) and sysctl.conf(5). # # In order for this file to work properly, you must first # enable 'Sysctl support' in the kernel. # # Look in /proc/sys/ for all the things you can setup. # # Disables packet forwarding #net.ipv4.ip_forward = 0 # Disables IP dynaddr #net.ipv4.ip_dynaddr = 0 # Disable ECN #net.ipv4.tcp_ecn = 0 # Enables source route verification net.ipv4.conf.default.rp_filter = 1 # Enable reverse path net.ipv4.conf.all.rp_filter = 1 # Disable source route #net.ipv4.conf.all.accept_source_route = 0 #net.ipv4.conf.default.accept_source_route = 0 # Disable redirects #net.ipv4.conf.all.accept_redirects = 0 #net.ipv4.conf.default.accept_redirects = 0 # Disable secure redirects #net.ipv4.conf.all.secure_redirects = 0 #net.ipv4.conf.default.secure_redirects = 0 # Ignore ICMP broadcasts #net.ipv4.icmp_echo_ignore_broadcasts = 1 # Disables the magic-sysrq key #kernel.sysrq = 0 # When the kernel panics, automatically reboot in 3 seconds #kernel.panic = 3 # Allow for more PIDs (cool factor!); may break some programs #kernel.pid_max = 999999 # TCP Port for lock manager #fs.nfs.nlm_tcpport = 0 # UDP Port for lock manager #fs.nfs.nlm_udpport = 0 # Adjust realtime clock - mplayer and co take advantage dev.rtc.max-user-freq = 1024 # # Generally needed parameters for OpenVZ # # # packet forwarding enabled and proxy arp disabled # net.ipv4.ip_forward = 1 # net.ipv4.conf.default.proxy_arp = 0 # # Enables source route verification # net.ipv4.conf.all.rp_filter = 1 # # Enables the magic-sysrq key # kernel.sysrq = 1 # # TCP Explict Congestion Notification # #net.ipv4.tcp_ecn = 0 # # allow not all interfaces to send redirects # net.ipv4.conf.default.send_redirects = 1 # net.ipv4.conf.all.send_redirects = 0