Why restarting firewalld restores sysctl setting nf_conntrack_max to default ?
Issue
- Restarting firewalld restores the sysctl setting
net.netfilter.nf_conntrack_max
to default 65536
# cat /proc/sys/net/netfilter/nf_conntrack_max
65536
# sysctl -p
net.netfilter.nf_conntrack_max = 131072
# cat /proc/sys/net/netfilter/nf_conntrack_max
131072
# systemctl restart firewalld
# cat /proc/sys/net/netfilter/nf_conntrack_max
65536
Environment
- Red Hat Enterprise Linux 7.1
- firewalld
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.