Re: one rule to create per IP connlimits?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

Toby DiPasquale schrieb:
> To do this, the connlimit module would have to keep track of
> individual conntracks, not just aggregate numbers. It doesn't right
> now, but it could be made to do so.

Do you have any plans to change that? If no, do you know if anybody
is maintaining connlimit right now?

I'd like a combination of hashlimit and connlimit which also works
for UDP so I can limit the number of simultaneous connections per
IP to avoid overflowing the conntrack table of upstream firewalls.


Regards,
Carl-Daniel
-- 
http://www.hailfinger.org/


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux