Page MenuHomePhabricator

net.ipv6.route.max_size = 32768
Open, Requires assessmentPublic

Description

There are about 70k routes in the current DFZ. It's time to increase VyOS's default…? But as someone who has encountered "issues" with the potential for kernel resource exhaustion by IPv6 routes — https://www.youtube.com/watch?v=R0INwMN6FFE — I would exercise caution against setting it to something inappropriate.

And maybe it's worth reconsidering whether sys.net.ipv4.route.max_size having the humongous value of 2147483647 is sane. At least with IPv4 (and with more recent kernels for IPv6) you can't grow the routing table size without bound by scanning network address-space :)

Details

Difficulty level
Unknown (require assessment)
Version
1.2.0-rolling+201906220337
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Perfectly compatible

Event Timeline

maznu created this task.Sep 29 2019, 12:18 PM
maznu created this object in space S1 VyOS Public.
Dmitry added a subscriber: Dmitry.Sep 29 2019, 2:41 PM

@maznu , you can also set this manually set system sysctl custom net.ipv6.route.max_size value 143360, but seems default value is really small.

maznu added a comment.Sep 29 2019, 8:50 PM

Agreed, I'm going to workaround with set system sysctl custom, but also submit a PR: https://github.com/vyos/vyatta-cfg-system/pull/107