[FUG-BR] Erros após modificar sysctl.conf
MArvelrat
marvelrat em bol.com.br
Quarta Julho 16 08:10:47 BRT 2008
Olá pessoal
tenho um dúvida...
após ter feito algumas mudanças em rc.conf e sysctl.conf começei a notar
mensagens estranhas na saída do messages e também do log do squid
cache.log...segue abaixo o que foi mudado e as saídas...
Existem outras saídas novas ..porém estas identifiquei...é o log de
tentativas de conexao em portas fechadas...mas estas aí procurei no
google e nao acheoi nada concreto
*rc.conf*
syslogd_flags="-ss"
rpcbind_enable="NO"
kern_securelevel_enable="YES"
kern_securelevel=1netd_enabln="NO"
inetd_enable="NO"
nfs_server_enable="NO"
nfs_client_enable="NO"
*sysctl.conf:*
security.bsd.see_other_uids=0
kern.coredump=0
#TCP
net.inet.tcp.rfc1323=1
net.inet.tcp.syncookies=1
net.inet.tcp.blackhole=2
net.inet.tcp.log_in_vain=1
net.inet.tcp.sack.enable=1
#UDP
net.inet.udp.blackhole=2
net.inet.udp.log_in_vain=1
# ICMP
net.inet.icmp.bmcastecho=0
net.inet.ip.redirect=0
# Configuracoes
net.inet.ip.rtexpire=2
net.inet.ip.rtminexpire=2
# Tuning 1 Stack TCP/IP & Kernel Tuning
kern.maxfiles=131392
kern.maxfilesperproc=16424
kern.ipc.somaxconn=8192
kern.ipc.maxsockbuf=8388608
# Ideal, segundo Matt Dillon - man tuning(7)
net.inet.tcp.always_keepalive=1
net.inet.tcp.keepidle=24000
net.inet.tcp.keepintvl=3000
net.inet.tcp.keepinit=70000
net.inet.ip.intr_queue_maxlen=50
*saída /var/log/messages:*
Jul 16 02:21:20 firewall named[2515]: could not listen on UDP socket:
permission denied
Jul 16 02:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 02:21:20 firewall named[2515]: not listening on any interfaces
Jul 16 03:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 03:21:20 firewall named[2515]: not listening on any interfaces
Jul 16 04:21:20 firewall named[2515]: could not listen on UDP socket:
permission denied
Jul 16 04:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 04:21:20 firewall named[2515]: not listening on any interfaces
Jul 16 05:21:20 firewall named[2515]: could not listen on UDP socket:
permission denied
Jul 16 05:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 05:21:20 firewall named[2515]: not listening on any interfaces
Jul 16 06:21:20 firewall named[2515]: could not listen on UDP socket:
permission denied
Jul 16 06:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 06:21:20 firewall named[2515]: not listening on any interfaces
Jul 16 07:21:20 firewall named[2515]: could not listen on UDP socket:
permission denied
Jul 16 07:21:20 firewall named[2515]: creating IPv4 interface lo0
failed; interface ignored
Jul 16 07:21:20 firewall named[2515]: not listening on any interfaces
*
log do squid cache.log*
2008/07/16 07:41:51| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:43:11| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:44:16| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:45:28| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:46:29| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:47:32| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:48:50| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:49:51| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:50:52| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:52:05| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:53:12| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:54:18| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:55:20| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:56:29| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:57:32| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:58:34| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 07:59:35| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 08:00:37| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 08:01:40| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 08:02:46| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 08:03:53| clientNatLookup: PF open failed: (13) Permission denied
2008/07/16 08:04:54| clientNatLookup: PF open failed: (13) Permission denied
é isso aí...abraços
Mais detalhes sobre a lista de discussão freebsd