From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Tomasz Wrona" Subject: Per IP packets/s limit. Date: Sat, 22 Nov 2003 17:34:34 +0100 Sender: netfilter-admin@lists.netfilter.org Message-ID: <3fbf901a8bd4c@wp.pl> Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Return-path: Content-Disposition: inline Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" To: netfilter@lists.netfilter.org Hello, I am a bit out of date... so I would like to ask if does any iptables module support per IP pkt/s limit ? I mean something like "-m limit --limit X/s [--limit-burst Y]" but working per IP simmilar to iplimit module which do not require creating separate rules for each src IP. I think it could be usefull against simple icmp/udp DoS in large LAN enviroment. Regards tw --