OpenVZ Forum

Home » General » Support » How to Disable nf_conntrack on vz start
How to Disable nf_conntrack on vz start [message #50629] Wed, 25 September 2013 11:40
seanfulton is currently offline  seanfulton
Messages: 105
Registered: May 2007
Senior Member
We're running 2.6.32-042stab079.6 & vzctl-4.5.1-1.x86_64.

Every time we start vz, we see:

[142917.016235] ip_tables: (C) 2000-2006 Netfilter Core Team
[142917.045272] Enabling conntracks and NAT for ve0
[142917.045275] nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
[142917.058131] FS-Cache: Loaded
[142917.084612] Registering the id_resolver key type
[142917.084639] FS-Cache: Netfs 'nfs' registered for caching
[142917.124428] ploop_dev: module loaded
[142960.129006] FS-Cache: Netfs 'nfs' unregistered from caching
[142960.155300] FS-Cache: Unloaded

Where does this stuff get loaded? How do we make it stop?

I commented out the IPTABLES lines in /etc/vz/conf/vz.conf and from /etc/sysconfig/vz.

We don't want to load nf_conntrack.

Previous Topic: External IP access to containers
Next Topic: Script to delete VM IP on DDoS attack?
Goto Forum:

Current Time: Tue Jul 23 08:10:06 GMT 2024

Total time taken to generate the page: 0.02428 seconds