Brand new squid server shows many connections stuck in TIME_WAIT

Hi all!

The title really says it all.  I deployed the squid server to a small number of highly used computers yesterday and this morning I checked the server with a netstat -t and saw that several of the computers were still in the TIME_WAIT state.  Is there a way that I could clear them or, better yet prevent the connections from getting stuck in this state permanently?
brussell123Asked:
Who is Participating?

Improve company productivity with a Business Account.Sign Up

x
 
DarthModConnect With a Mentor Commented:
PAQed with points refunded (125)

DarthMod
Community Support Moderator
0
 
pablouruguayCommented:
do a netstat -np  and check the process that hang the connection
0
 
pablouruguayCommented:
sorry netstat -ap
0
Get your problem seen by more experts

Be seen. Boost your question’s priority for more expert views and faster solutions

 
brussell123Author Commented:
All of the ESTABLISHED connections (except my ssh connection) are associated with squid.  The TIME_WAIT connections just have a "-" in the PID/Program field.
0
 
pablouruguayCommented:
0
 
nociSoftware EngineerCommented:
TIME_WAIT's are half closed connections..., The FIN packet has left your system but the FIN-ACK hasn't been received yet.
so there is no process associated anymore with the socket (hence the - in the PID field).

The problem might be a slow response from a remote system like:

Squid closes the link, your netfilter settings close down a few seconds later but the FIN-ACK hasn't been received yet.
AFTER 60 seconds that socket will get killed too.

Here is a similar reference.
http://www.mail-archive.com/netfilter-devel%40lists.samba.org/msg00644.html
0
 
brussell123Author Commented:
No luck.  I have resorted to simply ignoring the TIME_WAIT connections.  I have no idea what the max connections of my box is but I really cant think of what else to do except restart the server once a week at night.
0
 
nociSoftware EngineerCommented:
I was on holiday since 27-07-2006, and obviously missed the update; if brussel123 want to persue or close I leave it to him
regarding the points there's no real solution only a pointer were to look, and an explanation.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.