Re: Count/limit feature

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



* Rowan Reid (rreid@xxxxxxxxxxxxxx) wrote:
> I was talking to someone of BSD persuasion and they noted that the ipfw
> feature had a count parameter which can be used to limit icmp attacks.
> Ie more then n number of pings and you begin to ignore the client or
> address range.  Is there something similar for netfilter

You can do this with ipt_recent to ignore the address it's coming from.
I'm thinking about adding an ability to do address ranges to it.

	Stephen

Attachment: pgp00397.pgp
Description: PGP signature


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux