[tor-relays] debugging unbound on 'torexit' failing DNS queries (solved)
nusenu-lists at riseup.net
Sun Jan 21 22:06:00 UTC 2018
> Ah, thats it. My conntrack entries are full and temporarily increasing it
> resolves the problem.
I'm glad we found the problem and the solution.
Your exit appears to be offline since 2018-01-20 20:00, expected downtime?
> What would be a reasonable conntrack limit for a tor exit?
The amount of states depend on your consensus weight (and probably exit policy),
do you require a stateful packet filter?
-------------- next part --------------
A non-text attachment was scrubbed...
Size: 833 bytes
Desc: OpenPGP digital signature
More information about the tor-relays