On Monday 2009-07-06 11:53, Thomas Jacob wrote: >Since hashlimit has come up on the list today: > >Is there any technical reason why hashlimit has a built in maximum >limit of only 10k pps? Same reason as xt_limit, see comment above MAX_CPJ. >If not, are there any plans of some of the core >developers to increase that limit in the near future? If not, I presume >that patches would be welcome? The rate estimator seems to be a better fit algorithmatically, though the extension lacks the grouping using --hashlimit-mode and --hashlimit-{src,dst}mask that makes hashlimit so versatile. RATEEST also - standalone - requires two rules at this time. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html