[CentOS] which firewall to automatically block bandwidth abusers?

Patrick Lists centos-list at puzzled.xs4all.nl
Thu Aug 18 19:46:21 UTC 2011


On 08/18/2011 09:31 PM, Rudi Ahlers wrote:
[snip]
> I have read through that document link on
> http://lartc.org/lartc.html#AEN1393 and the closest I could get is
> rate limiting, but that doesn't actually block the IP if it goes over
> a certain threshold, it just slows everything down.

How about the netfilter quota, fuzzy and iplimit extensions?

http://www.netfilter.org/documentation/HOWTO/netfilter-extensions-HOWTO.html#toc3.4

http://www.netfilter.org/documentation/HOWTO/netfilter-extensions-HOWTO.html#toc3.5

http://www.netfilter.org/documentation/HOWTO/netfilter-extensions-HOWTO-3.html#ss3.13

Regards,
Patrick



More information about the CentOS mailing list