本文共 2837 字,大约阅读时间需要 9 分钟。
应用服务器sysctl.conf部分参数
## network configurationsnet.ipv4.ip_forward = 0 # IP packet forwardingnet.ipv4.tcp_tw_reuse=1net.ipv4.tcp_tw_recycle=1net.ipv4.tcp_fin_timeout=30 #60,每条至多占 1.5K 的内存net.ipv4.tcp_keepalive_time=1800 #7200net.core.netdev_max_backlog=3000 #1000每个网络接口接收数据包的速率比内核处理这些包的速率快时,允许送到队列的数据包的最大数目net.ipv4.tcp_max_syn_backlog=4096 #1024 增加TCP SYN队列长度,使系统可以处理更多的并发连接net.core.wmem_default = 2097152 #108544,系统套接字缓冲区net.core.rmem_default = 2097152 #108544,系统套接字缓冲区net.core.rmem_max=16777216 #131071,系统套接字缓冲区net.core.wmem_max=16777216 #131071,系统套接字缓冲区net.ipv4.tcp_rmem=4096 87380 16777216 #4096 87380 174760, TCP接收缓冲区net.ipv4.tcp_wmem=4096 65536 16777216 #4096 16384 131072, TCP发送缓冲区net.ipv4.tcp_mem = 786432 1048576 1572864 # Out of socket memorynet.ipv4.tcp_syncookies=1 #0,防SyncFlood攻击net.ipv4.ip_local_port_range = 32768 61000 #用于向外连接的端口范围,这是默认值net.ipv4.tcp_max_tw_buckets = 5000 #180000,同时保持TIME_WAIT套接字的最大数量#以下可能需要加载ip_conntrack模块 modprobe ip_conntrack# net.ipv4.ip_conntrack_max=6553600# net.ipv4.netfilter.ip_conntrack_tcp_timeout_established = 1800# net.ipv4.netfilter.ip_conntrack_max=6553600# net.ipv4.netfilter.ip_conntrack_tcp_timeout_time_wait=120# net.ipv4.netfilter.ip_conntrack_tcp_timeout_close_wait=60# net.ipv4.netfilter.ip_conntrack_tcp_timeout_fin_wait=120# net.ipv4.icmp_echo_ignore_all = 1 #0, Disable ping requests# net.ipv4.icmp_echo_ignore_broadcasts = 1 #1, Enable ignoring broadcasts requestnet.ipv4.neigh.default.gc_thresh3 = 40960 #1024net.ipv4.neigh.default.gc_thresh2 = 20480 #512net.ipv4.neigh.default.gc_thresh1 = 10240 #128##以上三条语句可以解决内核中出现的如下两行错误#Linux kernel: printk: xxxxx messages suppressed.#Linux kernel: Neighbour table overflow.## system configurations
fs.file-max = 372901 #23712, 整个系统所有可打开文件总数的限制, 可按256/4M内存计算值。# ulimit -n 10000 #某一程序可打开文件 总数的限制# kernel.ctrl-alt-del = 1 #0,Disable CTR+ALT+DEL Restart Keys附:sysctl.conf
fs.file-max = 372901net.ipv4.tcp_tw_reuse=1net.ipv4.tcp_tw_recycle=1net.ipv4.tcp_fin_timeout=30net.ipv4.tcp_keepalive_time=1800net.core.netdev_max_backlog=3000net.ipv4.tcp_max_syn_backlog=4096net.core.wmem_default = 2097152net.core.rmem_default = 2097152net.ipv4.tcp_rmem=4096 87380 16777216net.core.rmem_max=33554432net.ipv4.tcp_wmem=4096 65536 16777216net.core.wmem_max=33554432net.ipv4.tcp_mem = 786432 1048576 1572864net.ipv4.tcp_syncookies=1net.ipv4.tcp_max_tw_buckets = 180000net.ipv4.ip_conntrack_max=6553600net.ipv4.netfilter.ip_conntrack_max=6553600net.ipv4.netfilter.ip_conntrack_tcp_timeout_time_wait=60net.ipv4.netfilter.ip_conntrack_tcp_timeout_close_wait=30net.ipv4.netfilter.ip_conntrack_tcp_timeout_fin_wait=60net.ipv4.ip_local_port_range = 32768 61000
来自 “ ITPUB博客 ” ,链接:http://blog.itpub.net/8183550/viewspace-688333/,如需转载,请注明出处,否则将追究法律责任。
转载于:http://blog.itpub.net/8183550/viewspace-688333/