* Rowan Reid (rreid@xxxxxxxxxxxxxx) wrote: > I was talking to someone of BSD persuasion and they noted that the ipfw > feature had a count parameter which can be used to limit icmp attacks. > Ie more then n number of pings and you begin to ignore the client or > address range. Is there something similar for netfilter You can do this with ipt_recent to ignore the address it's coming from. I'm thinking about adding an ability to do address ranges to it. Stephen
Attachment:
pgp00397.pgp
Description: PGP signature