官方文档: https://www.kernel.org/doc/Documentation/networking/nf_conntrack-sysctl.txt
这个参数的含义是:
conntrack 连接里面,是close状态的连接维持的状态:
[root@xxxx: /]# conntrack -L|grep 12345
conntrack v1.0.0 (conntrack-tools): 70 flow entries have been shown.
tcp 6 13 CLOSE src=192.168.1.2 dst=135.42.1.2 sport=61489 dport=12345 src=135.42.1.2 dst=21.1.8.126 sport=12345 dport=61489 [ASSURED] mark=0 use=1
这个参数的值默认是10s,那么close状态在conntrack表里面会维持10s