Differences
This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
| systemd-sysctl [2018/11/16 10:54] – rpjday | systemd-sysctl [2018/11/16 11:04] (current) – [50-default.conf] rpjday | ||
|---|---|---|---|
| Line 8: | Line 8: | ||
| * [[https:// | * [[https:// | ||
| - | ===== Files ==== | + | ===== File list ===== |
| * ''/ | * ''/ | ||
| Line 14: | Line 14: | ||
| * '' | * '' | ||
| * '' | * '' | ||
| + | * ''/ | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | |||
| + | ===== Config files ===== | ||
| + | |||
| + | ==== 10-default-yama-scope.conf ==== | ||
| + | |||
| + | < | ||
| + | kernel.yama.ptrace_scope = 0 | ||
| + | </ | ||
| + | |||
| + | ==== 20-pptpd.conf ==== | ||
| + | |||
| + | < | ||
| + | net.ipv4.ip_forward = 1 | ||
| + | </ | ||
| + | |||
| + | ==== 50-coredump.conf ==== | ||
| + | |||
| + | < | ||
| + | kernel.core_pattern=|/ | ||
| + | </ | ||
| + | |||
| + | ==== 50-default.conf ==== | ||
| + | |||
| + | < | ||
| + | # Use kernel.sysrq = 1 to allow all keys. | ||
| + | # See https:// | ||
| + | # of values and keys. | ||
| + | kernel.sysrq = 16 | ||
| + | |||
| + | # Append the PID to the core filename | ||
| + | kernel.core_uses_pid = 1 | ||
| + | |||
| + | # Source route verification | ||
| + | net.ipv4.conf.all.rp_filter = 1 | ||
| + | |||
| + | # Do not accept source routing | ||
| + | net.ipv4.conf.all.accept_source_route = 0 | ||
| + | |||
| + | # Promote secondary addresses when the primary address is removed | ||
| + | net.ipv4.conf.all.promote_secondaries = 1 | ||
| + | |||
| + | # Fair Queue CoDel packet scheduler to fight bufferbloat | ||
| + | net.core.default_qdisc = fq_codel | ||
| + | |||
| + | # Enable hard and soft link protection | ||
| + | fs.protected_hardlinks = 1 | ||
| + | fs.protected_symlinks = 1 | ||
| + | </ | ||
| + | |||
| + | ==== 50-libkcapi-optmem_max.conf ==== | ||
| + | |||
| + | < | ||
| + | net.core.optmem_max = 81920 | ||
| + | </ | ||
| + | |||
| + | ==== 60-libvirtd.conf ==== | ||
| + | |||
| + | < | ||
| + | fs.aio-max-nr = 1048576 | ||
| + | </ | ||