服务器优化配置:
echo 9 >/proc/sys/net/ipv4/tcp_fin_timeout
echo 300 >/proc/sys/net/ipv4/tcp_max_tw_buckets
echo 10 >/proc/sys/vm/dirty_ratio
echo 40 >/proc/sys/vm/swappiness
echo 3 >/proc/sys/vm/drop_caches
echo 1 > /proc/sys/net/ipv4/tcp_syncookies
echo 6291456 > /proc/sys/net/ipv4/route/max_size
echo 4294967295 >/proc/sys/kernel/shmmax
echo 536870912 >/proc/sys/net/core/rmem_max
echo 536870912 >/proc/sys/net/core/wmem_max
echo 536870912 >/proc/sys/net/core/rmem_default
echo 536870912 >/proc/sys/net/core/wmem_default
echo 65536 > /proc/sys/net/ipv4/udp_rmem_min
echo 65536 > /proc/sys/net/ipv4/udp_wmem_min
echo 8388608 12582912 16777216 >/proc/sys/net/ipv4/tcp_mem
echo 1532544 2043392 3065088 >/proc/sys/net/ipv4/udp_mem
echo 5000 >/proc/sys/net/core/netdev_max_backlog
echo 9 >/proc/sys/net/ipv4/tcp_fin_timeout
echo 300 >/proc/sys/net/ipv4/tcp_max_tw_buckets
echo 10 >/proc/sys/vm/dirty_ratio
echo 40 >/proc/sys/vm/swappiness
echo 3 >/proc/sys/vm/drop_caches
echo 1 > /proc/sys/net/ipv4/tcp_syncookies
echo 6291456 > /proc/sys/net/ipv4/route/max_size
iptables -A FORWARD -p tcp -m tcp --tcp-flags SYN,RST SYN -j
TCPMSS --set-mss 1436
修改ms值,由于有些网页的路径mtu过小,导致有些网站打不开可以通过修改这个参数解决
vi /etc/sysctl.conf 然后刷下面的配置 在配置文件末尾刷
net.netfilter.nf_conntrack_generic_timeout = 600
net.netfilter.nf_conntrack_tcp_timeout_syn_sent = 120
net.netfilter.nf_conntrack_tcp_timeout_syn_recv = 60
net.netfilter.nf_conntrack_tcp_timeout_established = 300
net.netfilter.nf_conntrack_tcp_timeout_fin_wait = 120
net.netfilter.nf_conntrack_tcp_timeout_close_wait = 60
net.netfilter.nf_conntrack_tcp_timeout_last_ack = 30
net.netfilter.nf_conntrack_tcp_timeout_time_wait = 120
net.netfilter.nf_conntrack_tcp_timeout_close = 10
net.netfilter.nf_conntrack_tcp_timeout_max_retrans = 300
net.netfilter.nf_conntrack_tcp_timeout_unacknowledged = 300
net.netfilter.nf_conntrack_tcp_loose = 1
net.netfilter.nf_conntrack_tcp_be_liberal = 0
net.netfilter.nf_conntrack_tcp_max_retrans = 3
net.netfilter.nf_conntrack_udp_timeout = 30
net.netfilter.nf_conntrack_udp_timeout_stream = 180
net.netfilter.nf_conntrack_icmp_timeout = 30
net.netfilter.nf_conntrack_acct = 1
net.netfilter.nf_conntrack_max = 2000000
net.netfilter.nf_conntrack_count = 191289
net.netfilter.nf_conntrack_buckets = 2000896
net.netfilter.nf_conntrack_checksum = 1
net.netfilter.nf_conntrack_log_invalid = 0
net.netfilter.nf_conntrack_expect_max = 256
net.core.somaxconn = 128
net.ipv4.netfilter.ip_conntrack_generic_timeout = 600
net.ipv4.netfilter.ip_conntrack_tcp_timeout_syn_sent = 120
net.ipv4.netfilter.ip_conntrack_tcp_timeout_syn_recv = 60
net.ipv4.netfilter.ip_conntrack_tcp_timeout_established = 300
net.ipv4.netfilter.ip_conntrack_tcp_timeout_fin_wait = 120
net.ipv4.netfilter.ip_conntrack_tcp_timeout_close_wait = 60
net.ipv4.netfilter.ip_conntrack_tcp_timeout_last_ack = 30
net.ipv4.netfilter.ip_conntrack_tcp_timeout_time_wait = 120
net.ipv4.netfilter.ip_conntrack_tcp_timeout_close = 10
net.ipv4.netfilter.ip_conntrack_tcp_timeout_max_retrans = 300
net.ipv4.netfilter.ip_conntrack_tcp_loose = 1
net.ipv4.netfilter.ip_conntrack_tcp_be_liberal = 0
net.ipv4.netfilter.ip_conntrack_tcp_max_retrans = 3
net.ipv4.netfilter.ip_conntrack_udp_timeout = 30
net.ipv4.netfilter.ip_conntrack_udp_timeout_stream = 180
net.ipv4.netfilter.ip_conntrack_icmp_timeout = 30
net.ipv4.netfilter.ip_conntrack_max = 2000000
net.ipv4.netfilter.ip_conntrack_count = 191274
net.ipv4.netfilter.ip_conntrack_buckets = 2000896
net.ipv4.netfilter.ip_conntrack_checksum = 1
net.ipv4.netfilter.ip_conntrack_log_invalid = 0
net.nf_conntrack_max = 2000000
sysctl -p