]> git.ipfire.org Git - people/stevee/ipfire-2.x.git/commitdiff
suricata: Use up to 256MB of RAM for the flow cache
authorMichael Tremer <michael.tremer@ipfire.org>
Thu, 28 Feb 2019 14:28:20 +0000 (14:28 +0000)
committerStefan Schantl <stefan.schantl@ipfire.org>
Fri, 1 Mar 2019 16:56:47 +0000 (17:56 +0100)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org>
config/suricata/suricata.yaml

index 494d59aad6bcb1edc8848f8aca30fc55af3e54e8..255ce1a33469d462f3290ee440a8a1c2ca00cdb9 100644 (file)
@@ -502,12 +502,12 @@ defrag:
 # in bytes.
 
 flow:
-  memcap: 128mb
+  memcap: 256mb
   hash-size: 65536
   prealloc: 10000
   emergency-recovery: 30
-  #managers: 1 # default to one flow manager
-  #recyclers: 1 # default to one flow recycler thread
+  managers: 1
+  recyclers: 1
 
 # This option controls the use of vlan ids in the flow (and defrag)
 # hashing. Normally this should be enabled, but in some (broken)