From owner-freebsd-pf@FreeBSD.ORG Fri Mar 24 19:48:42 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8F58C16A400 for ; Fri, 24 Mar 2006 19:48:42 +0000 (UTC) (envelope-from volker@vwsoft.com) Received: from mail1mbg.elbekies.net (mail1mbg.elbekies.net [217.6.211.150]) by mx1.FreeBSD.org (Postfix) with ESMTP id C289C43D68 for ; Fri, 24 Mar 2006 19:48:30 +0000 (GMT) (envelope-from volker@vwsoft.com) Received-SPF: pass (mail1mbg.elbekies.net: domain of vwsoft.com designates 212.23.126.7 as permitted sender) client-ip=212.23.126.7; envelope-from=volker@vwsoft.com; helo=mail.vtec.ipme.de; Received: from mail.vtec.ipme.de (gprs-pool-1-007.eplus-online.de [212.23.126.7]) by mail1mbg.elbekies.net (Postfix) with ESMTP id 5FBD367873 for ; Fri, 24 Mar 2006 20:48:25 +0100 (CET) Received: from [127.0.0.1] (unknown [192.168.201.3]) by mail.vtec.ipme.de (Postfix) with ESMTP id 743225C0F; Fri, 24 Mar 2006 20:48:16 +0100 (CET) Message-ID: <44244CFF.3020809@vwsoft.com> Date: Fri, 24 Mar 2006 20:48:15 +0100 From: Volker User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.7.10) Gecko/20050716 Thunderbird/1.0.6 Mnenhy/0.6.0.101 MIME-Version: 1.0 To: "Travis H." , Daniel Hartmeier References: <44216734.2060101@vwsoft.com> <20060323094654.GD25046@insomnia.benzedrine.cx> In-Reply-To: X-Enigmail-Version: 0.94.0.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-VWSoft-MailScanner: Found to be clean X-Elbekies-MailScanner: Found to be clean X-Elbekies-MailScanner-SpamCheck: spam, SBL+XBL X-MailScanner-From: volker@vwsoft.com Cc: freebsd-pf@freebsd.org Subject: {Spam?} Re: {Spam?} no buffer space available X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 24 Mar 2006 19:48:42 -0000 On 2006-03-23 13:01, Travis H. wrote: > On 3/23/06, Daniel Hartmeier wrote: >> If it were an mbuf leak, it wouldn't go away right after you run pfctl >> -d, as disabling pf will not cause any memory to get released at all. >> >> You might simply be hitting the (default) 10,000 state entry limit, >> check pfctl -si output. If so, increase it with 'set limit states'. > > I've deliberately set my state table to be small, thinking it would > use less mbufs, and that didn't help. I'll try setting it high soon. > I did recover the box by flushing all pf stuff, but it didn't stay > working for very long. Travis, Daniel, thank you for your response. I'll check for both situations as soon as this problem occurs the next time (which will take place every few days). I'll than post the results into this mailinglist again. Greetings, Volker