[prev in list] [next in list] [prev in thread] [next in thread] 

List:       redhat-list
Subject:    Re: Rapid Application
From:       Pete Nesbitt <pete () linux1 ! ca>
Date:       2004-05-31 3:08:33
Message-ID: 200405302008.33523.pete () linux1 ! ca
[Download RAW message or body]

On May 29, 2004 01:59 pm, Ryan Golhar wrote:
> Sure, Here are my rules:
>
<snip...>
> # Syn flood filtering chain
>
> -A SYN-FLOOD -m limit --limit 1/s --limit-burst 4 -j RETURN
> -A SYN-FLOOD -j LOG --log-prefix "SYN-FLOOD: "
> -A SYN-FLOOD -j DROP
>
<snip...>
>
> -----
> Ryan Golhar
> Computational Biologist
> The Informatics Institute at
> The University of Medicine & Dentistry of NJ
>
> Phone: 973-972-5034
> Fax: 973-972-7412
> Email: golharam@umdnj.edu
>


hmm, I think this post is actually "SYN-FLOOD to LDAPS port from clients"

I don't see anything actually wrong, but a 1/sec limit seems a little tight, 
why not try increasing it and see what happens. Or what about 60/minute?

-- 
Pete Nesbitt, rhce


-- 
redhat-list mailing list
unsubscribe mailto:redhat-list-request@redhat.com?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic