sysctl -e -w fs.file-max=6000000; sysctl -e -w fs.nr_open=10000000; sysctl -e -w net.core.rmem_max=16777216; sysctl -e -w net.core.wmem_max=16777216; sysctl -e -w net.core.rmem_default=12582912; sysctl -e -w net.core.wmem_default=12582912; sysctl -e -w net.core.optmem_max=25165824; sysctl -e -w net.core.netdev_max_backlog=262144; sysctl -e -w net.core.somaxconn=32768; sysctl -e -w net.core.rps_sock_flow_entries=32768; sysctl -e -w net.ipv4.ip_local_port_range="1025 65535"; sysctl -e -w net.ipv4.tcp_rmem="8192 262144 16777216"; sysctl -e -w net.ipv4.tcp_wmem="8192 262144 16777216"; sysctl -e -w net.ipv4.udp_rmem_min=16384; sysctl -e -w net.ipv4.udp_wmem_min=16384; sysctl -e -w net.ipv4.ip_no_pmtu_disc=0; sysctl -e -w net.ipv4.route.flush=1; sysctl -e -w net.ipv4.tcp_dsack=1; sysctl -e -w net.ipv4.tcp_sack=1; sysctl -e -w net.ipv4.tcp_fack=1; sysctl -e -w net.ipv4.tcp_max_tw_buckets=1440000; sysctl -e -w net.ipv4.tcp_tw_recycle=0; sysctl -e -w net.ipv4.tcp_tw_reuse=1; sysctl -e -w net.ipv4.tcp_frto=0; sysctl -e -w net.ipv4.tcp_syncookies=1; sysctl -e -w net.ipv4.tcp_max_syn_backlog=32768; sysctl -e -w net.ipv4.tcp_synack_retries=2; sysctl -e -w net.ipv4.tcp_syn_retries=3; sysctl -e -w net.ipv4.tcp_fin_timeout=5; sysctl -e -w net.ipv4.tcp_retries2=5; sysctl -e -w net.ipv4.tcp_no_metrics_save=1; sysctl -e -w net.ipv4.tcp_moderate_rcvbuf=1; sysctl -e -w net.ipv4.tcp_timestamps=1; sysctl -e -w net.ipv4.tcp_keepalive_time=300; sysctl -e -w net.ipv4.tcp_keepalive_intvl=30; sysctl -e -w net.ipv4.tcp_keepalive_probes=6; sysctl -e -w net.ipv4.tcp_slow_start_after_idle=0; sysctl -e -w net.ipv4.tcp_window_scaling=1; sysctl -e -w net.ipv4.tcp_low_latency=1; sysctl -e -w net.ipv4.tcp_max_orphans=262144; sysctl -e -w net.nf_conntrack_max=9145728; sysctl -e -w net.netfilter.nf_conntrack_max=9145728; sysctl -e -w net.netfilter.nf_conntrack_tcp_timeout_time_wait=10; sysctl -e -w net.netfilter.nf_conntrack_tcp_timeout_fin_wait=10; sysctl -e -w net.netfilter.nf_conntrack_tcp_timeout_close_wait=30; sysctl -e -w net.netfilter.nf_conntrack_tcp_loose=1; sysctl -e -w net.ipv4.tcp_rfc1337=1;
Tuesday, June 16, 2020
Ingress Nginx network settings
The following network settings are for a machine which hosts nginx.
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment