Large table issue

Richard Brendörfer neamtu at gmail.com
Wed May 18 13:01:04 UTC 2011


Hi,
try with *set limit table-entries number* in pf.vonf or split you table in 2
or 3 tables.

On Wed, May 18, 2011 at 2:03 PM, quentin.narvor <
quentin.narvor at ensi-bourges.fr> wrote:

> I am trying to detect problems on hosts in my network : I want to detect
> when a communication occurs with a compromised host.
> I have built a blacklist which holds near 2 millions ip (spam, malware....
> hosts).
>
> But I can't load it into pf, I get this when I try :
>
>     /etc/pf.conf:6: cannot define table bl: Cannot allocate memory
>     pfctl: Syntax error in config file: pf rules not loaded
>
> I suspect there is a memory limitation somewhere (in the kernel ??) which
> prevent me from loading the table but I am not very comfortable with kernel
> variables.
> I have already try modifying kern.maxssiz and kern.dflsiz without success.
>
> Any idea?
> _______________________________________________
> freebsd-pf at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-pf
> To unsubscribe, send any mail to "freebsd-pf-unsubscribe at freebsd.org"
>


More information about the freebsd-pf mailing list