ipp2p is only for limiting p2p trafic. I don't want to limit trafic and do trafic shaping for p2p (or block p2p). I want only to solve problem with ip_conntrack. I need any solution to limit connections per IP address. Mirek >-----Original Message----- >From: netfilter-bounces@xxxxxxxxxxxxxxxxxxx >[mailto:netfilter-bounces@xxxxxxxxxxxxxxxxxxx] On Behalf Of >Franck Joncourt >Sent: Friday, March 09, 2007 8:40 PM >To: netfilter@xxxxxxxxxxxxxxxxxxx >Subject: Re: Connlimit problem k2.6.18.2 , ipt1.3.7 > >On Fri, Mar 09, 2007 at 06:59:05PM +0100, Bc. Miroslav Kopecek wrote: >> Hi, > >Hi, > >> I have Debian Sarge 3.1 testing, compiled kernel 2.6.18.2 >and actual >> iptables 1.3.7 compiled and installed >> >> I need to solve problem with full ip_conntrack on my router. >One client with >> some agressive P2P makes ip_conntack full. So I need to >limit connections >> per that IP address > >Have you tried that : > >http://www.ipp2p.org/docu_en.html > >-- >Franck Joncourt >http://www.debian.org >http://smhteam.info/wiki/ >GPG server : pgpkeys.mit.edu >Fingerprint : C10E D1D0 EF70 0A2A CACF 9A3C C490 534E 75C0 89FE >