RES: Trouble with PF

David Verzolla dverzolla at
Thu Sep 27 06:19:24 PDT 2007

The limit of the states was reached.

"set limit { states 70000, frags 5000 }": solves my problem.

Have anyone that has a number higher then 100000?



-----Mensagem original-----
De: owner-freebsd-pf at [mailto:owner-freebsd-pf at] Em nome de David Verzolla
Enviada em: quarta-feira, 26 de setembro de 2007 18:07
Para: freebsd-pf at
Assunto: Trouble with PF


I'm working with two firewall box:
      - Dell poweredge 2950
            - First  network device BCE0
            - Second network device BCE1

      - HP ML350 G3
            - First network device BGE0
            - Second network device XL0


My FreeBSD Box is a: 6.2-STABLE.

I'm working with PF Firewall + PFSYNC + VLANS (3 vlans) + CARP.
All interfaces is cloned with CARP.


The problem is:

My network is slow, when I try to connect in a web server, or try pings from my Firewall to some machine located in DMZ (tests from DMZ -> Firewall Box have the same result), I get this trouble:

[David Verzolla] [sniped]


David Verzolla
Administrador de Redes
Fundação Cásper Líbero - FCLNet
Tel: +55 11 3170.5937


freebsd-pf at mailing list
To unsubscribe, send any mail to "freebsd-pf-unsubscribe at"

More information about the freebsd-pf mailing list