chiark / gitweb /
sysctl: always write net.ipv4.conf.all.xyz= in addition to net.ipv4.conf.default...
authorLennart Poettering <lennart@poettering.net>
Fri, 15 Aug 2014 10:07:33 +0000 (12:07 +0200)
committerLennart Poettering <lennart@poettering.net>
Fri, 15 Aug 2014 10:07:33 +0000 (12:07 +0200)
Otherwise we have a boot-time race, where interfaces that popped up
after the sysctl service would get the settings applied, but all others
wouldn't.

sysctl.d/50-default.conf

index 1ee3698..8fc9ab7 100644 (file)
@@ -15,12 +15,15 @@ kernel.core_uses_pid = 1
 
 # Source route verification
 net.ipv4.conf.default.rp_filter = 1
+net.ipv4.conf.all.rp_filter = 1
 
 # Do not accept source routing
 net.ipv4.conf.default.accept_source_route = 0
+net.ipv4.conf.all.accept_source_route = 0
 
 # Promote secondary addresses when the primary address is removed
 net.ipv4.conf.default.promote_secondaries = 1
+net.ipv4.conf.all.promote_secondaries = 1
 
 # Enable hard and soft link protection
 fs.protected_hardlinks = 1