[EMAIL PROTECTED] said:
} >     echo "Extending MASQ timeouts.."
} >     /sbin/ipfwadm -M -s 7200 10 120

} great, thanks!  7200 is only two hours.  Is there a lot of problem
} increasing that to something much larger, such as two days?  Obviously
} it takes more load to keep track of connections for that long, but my
} system is pretty lightly used (only two machines behind the lan, my
} brother plays a lot of net games and other short connects, and the
} TCPFIN timeout should clear those out.  I just like to leave an xbiff
} open from my server at school, and I like keeping xterms around too.) 

In theory there is no problem making this as large as you like.  However 
it seems poor practice (its an inactivity timeout - personally I tend to 
run machines such that they log out sessions that have been idle that long.
A better bet, since you said you were using ssh, is to make sure that 
KeepAlives is set in the ssh config and use that to keep the link running.

        Nigel.
-- 
[ [EMAIL PROTECTED]   -  Systems Software Engineer ]
[ Tel : +44 113 207 6112                   Fax : +44 113 234 6065 ]
[      Real life is but a pale imitation of a Dilbert strip       ]


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For daily digest info, email [EMAIL PROTECTED]

Reply via email to