I've found the kernel parameter nf_conntrack.acct
interesting, in that the kernel documentation merely says "Enable connection tracking flow accounting".
I've appended this to grub and rebooted and I haven't found any difference. For example, what it has to do with the /proc/net/nf_conntrack
file?
Thanks in advance!
Best Answer
From iptables-extensions(8):
This accounting information can then be used to create rules for the
connbytes
netfilter module. Note that setting this option does not require a reboot, this can be enabled at runtime (for new connections only):When enabled,
/proc/net/nf_conntrack
will carry information about packet count and size: