Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # Controls source route verification
- net.ipv4.conf.default.rp_filter = 0
- # Do not accept source routing
- net.ipv4.conf.default.accept_source_route = 0
- # Controls the System Request debugging functionality of the kernel
- kernel.sysrq = 0
- # Controls whether core dumps will append the PID to the core filename.
- # Useful for debugging multi-threaded applications.
- # kernel.core_uses_pid = 1
- # Controls the use of TCP syncookies
- net.ipv4.tcp_syncookies = 1
- # Disable netfilter on bridges.
- net.bridge.bridge-nf-call-ip6tables = 0
- net.bridge.bridge-nf-call-iptables = 0
- net.bridge.bridge-nf-call-arptables = 0
- # Controls the maximum size of a message, in bytes
- kernel.msgmnb = 65536
- # Controls the default maxmimum size of a mesage queue
- kernel.msgmax = 65536
- # Controls the maximum shared segment size, in bytes
- kernel.shmmax = 68719476736
- # Controls the maximum number of shared memory segments, in pages
- kernel.shmall = 4294967296
- # enable IPv4 packet forwarding
- net.ipv4.ip_forward = 1
- # improve security
- kernel.exec-shield = 1
- kernel.randomize_va_space = 1
- # core file dumps
- kernel.core_uses_pid = 1
- kernel.core_pattern = core.%e.pid%p.usr%u.sig%s.tim%t
- fs.suid_dumpable = 2
Advertisement
Add Comment
Please, Sign In to add comment