From: Murugavel T. <tmu...@gm...> - 2005-01-10 15:50:18
|
Hi We have implemented snort-inline 2.2.0 in our place. Kernel version 2.4.18-3 Aprox. 53Mbps of Traffic flowing thro that box . it is connected via fibre cable. suddenly it we are getting packet drop and latency in other two side. if we flush the iptables rules . I meant by pass the snort-inline .. we are not getting any errors. Even We removed all snort ruels also we are getting the same problem. right now the ip_queue_maxlen 1024 ip_conntrack_max 1410065407 Any suggestion welcome. We have dual Xeon processor with 1gb ram. I have checked the load also it is .50 only. There is no error in messages is it possible to split traffic into multiple instances of snort-inline? will it work any suggestion welcome Regards velu |