User Tools

Site Tools


pom:conntrack:tcp

conntrack_tcp

This module tracks TCP connections based on the source and destination ports. It has many timers. Make sure you know what you are doing before changing them.

Parameters :

Name Default value Description
syn_sent_timer180Specifies after how many seconds we assume a connection is closed or unresponsive after a TCP SYN was sent but none was received.
syn_recv_timer60Specifies after how many seconds we assume a connection is closed or unresponsive after a TCP SYN was sent and received but no further packet is exchanged.
last_ack_timer30Specifies after how many seconds we assume a connection is closed or unresponsive after a TCP FIN was received in both directions and no further packet is exchanged.
close_timer10Specifies after how many seconds we assume a connection is closed or unresponsive after a TCP RST was received and no further packet is exchanged.
time_wait_timer180Specifies how long we wait for remaining packets on the network after a TCP connection has been closed.
established_timer7200Specifies how long we keep informations about an established TCP connection while no further packets are exchanged.
enable_reuse_handlingnoEnable or disable handling of reused connections. Those connections violate the RFC in a way that the same source and destination ports are reused within the two minutes after the connection has been closed. Please note that the SYN packet will be handled as a packet from the first connection.
pom/conntrack/tcp.txt · Last modified: 2012/10/12 09:39 by 2001:7e8:2221:600:9471:feff:febb:91f7