From 436308ae4ec243c80262f3b43dcade0f9ca83859 Mon Sep 17 00:00:00 2001 From: Aaron Rainbolt Date: Mon, 29 Dec 2025 22:30:00 -0600 Subject: [PATCH] Minor comment fixes --- usr/lib/sysctl.d/990-security-misc.conf#security-misc-shared | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/usr/lib/sysctl.d/990-security-misc.conf#security-misc-shared b/usr/lib/sysctl.d/990-security-misc.conf#security-misc-shared index df597b0..b25e1e4 100644 --- a/usr/lib/sysctl.d/990-security-misc.conf#security-misc-shared +++ b/usr/lib/sysctl.d/990-security-misc.conf#security-misc-shared @@ -620,15 +620,14 @@ net.ipv4.tcp_tw_reuse=0 ## Martian and unroutable packets may be used for malicious purposes. ## Recommended to keep a (kernel dmesg) log of these to identify suspicious packets. ## Useful for troubleshooting and diagnostics but not necessary by default. -## Known to cause performance issues, especially on systems with multiple interfaces. +## Previously known to cause performance issues, especially on systems with multiple interfaces. +## This no longer seems to be a problem. ## ## https://wiki.archlinux.org/title/Sysctl#Log_martian_packets ## https://www.cyberciti.biz/faq/linux-log-suspicious-martian-packets-un-routable-source-addresses/ ## https://support.scc.suse.com/s/kb/Martian-sources-errors-showing-in-messages-log?language=en_US ## https://github.com/Kicksecure/security-misc/issues/214 ## -## The logging of martian packets is currently disabled. -## net.ipv4.conf.*.log_martians=1 ## Enable IPv6 Privacy Extensions to prefer temporary addresses over public addresses.