今天要检查mysql数据库时messages日志中有大量mysql kernel: nf_conntrack version 0.5.0连接信息,现在将解决方法记录下来,希望能帮助需要的人,注:操作系统是centos 6.4,具体参数和操作系统的内核有关.
日志信息:
Oct 30 22:23:02 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:23:02 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:23:03 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:23:03 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:25:25 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:45:43 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:45:44 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:45:44 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:45:45 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:45:45 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:49:31 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:49:31 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:49:32 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:49:32 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
Oct 30 22:49:33 mysql kernel: ip_tables: (C) 2000-2006 Netfilter Core Team
Oct 30 22:49:33 mysql kernel: nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
解决方法:
1.加载模块
modprobe nf_conntrack_ipv4
2.修改内核参数
vim /etc/sysctl.conf --添加以下现行
net.nf_conntrack_max = 655360
net.netfilter.nf_conntrack_tcp_timeout_established = 10800
3.内核配置文件生效
sysctl -p