ip_conntrack_max

The number of separate connections that can be tracked with netfilter conntrack (NAT layer). Defaults to a percentage of your total memory size. This percentage is geared towards a "general use" workstation with lots more memory (and fewer connections to track) than a typical special-purpose firewall box.