Move enabling nf_conntrack_acct where it should be.
authorMichael Tremer <michael.tremer@ipfire.org>
Fri, 14 Feb 2014 11:52:28 +0000 (12:52 +0100)
committerMichael Tremer <michael.tremer@ipfire.org>
Fri, 14 Feb 2014 11:52:28 +0000 (12:52 +0100)
config/etc/sysctl.conf
src/initscripts/init.d/network

index df3ef5f..d6a2f75 100644 (file)
@@ -28,3 +28,6 @@ vm.min_free_kbytes = 8192
 # Disable IPv6 by default.
 net.ipv6.conf.all.disable_ipv6 = 1
 net.ipv6.conf.default.disable_ipv6 = 1
+
+# Enable netfilter accounting
+net.netfilter.nf_conntrack_acct=1
index 88ac086..6b49274 100644 (file)
@@ -28,9 +28,6 @@ init_networking() {
        (exit ${failed})
        evaluate_retval
 
-       # Enable netfilter accounting
-       sysctl net.netfilter.nf_conntrack_acct=1 > /dev/null
-
        if [ -e /var/ipfire/main/disable_nf_sip ]; then
                rmmod nf_nat_sip
                rmmod nf_conntrack_sip