>> I have a router running FC 2 with kernel 2.6.10-1.770_FC2. >That kernel has security issues. Ok. I will look into fedoralegacy because I'm running the latest kernel from the mainstream updates. >I don't understand why your proc value is that small. >$ cat /proc/sys/net/ipv4/route/max_size >131072 Maybe it's because my machine has only 256MB ram? I think these values are computed according the RAM present. >This is on my unmodified FC2 with the rebuild FC3 kernel 2.6.11-1.35. >Do you constantly run P2P filesharing? That is a typical reason too for >stopping SOHO hardware router to work as they have limited NAT >capacities. No, I don't run p2p... What causes the most traffic is a lot of hosts with NFS (udp) mounted shares which reside on the other side of the firewall so there's a lot of traffic. Also I run shorewall 2.4.0... Could it be slowing down the cleaning of the cache? Thanks for your help. André