Modification to iptables (block IP addresses)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Is anyone working on the following modification to iptables?  Dynamically
watch for connections coming from any source IP addresses that exceeds a
predefined number of connections per unit time.  When seen, block all
subsequent connections from that source for a predefined period of time or
indefinitely.  Currently, one can do this for specific predefined source IP
addresses, but it would be good to have the ability to do this without
having prior knowledge of the the offending IP source.

Roger




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux