[OpenAFS] multiple NAT clients

Chaskiel M Grundman cg2v@andrew.cmu.edu
Wed, 16 Jun 2004 13:29:06 -0400


--On Wednesday, June 16, 2004 13:07:56 -0400 Chaskiel M Grundman
<cg2v@andrew.cmu.edu> wrote:

> --On Wednesday, June 16, 2004 11:37:56 -0400 Derek Atkins
> <warlord@MIT.EDU> wrote:
> 
>> It works fine IFF you set your UDP timeouts above 10 minutes.
>> I'd recommend 30 minute timeouts....
> 
> if your nat router is a linux 2.4 or 2.6 box, then you won't be able to do
> that

Matthew pointed out that his machine has a
net.ipv4.netfilter.ip_conntrack_udp_timeout setting that should be usable
for this purpose. This feature seems to have been added to stock kernels in
2.4.23, and may exist in earlier versions of vendor enhanced kernels. I
would guess that most, if not all, 2.6 kernels have the feature, but I
don't have enough source trees lying around to conveniently verify that.

"oops".