Wednesday, 18th May 2022

Comment on Resolving “nf_conntrack: table full, dropping packet.” flood message in dmesg Linux kernel log by scragg.

Thanks for the post. It was very helpful. When doing the rmmod, is that just unloading the modules or permanently deleting them? You mention don’t do the “iptables -t nat -L -n” because they will load again, so I assume the former. If I accidentally loaded them, would I just need to rmmod the modules again. I use iptables to close off all ports and poke holes in it for services and making blacklist/whitelists for certain IPs. Is the conntrack needed for this? I assume some of the modules you suggested to remove are required.

