mirror of
https://github.com/internetee/registry.git
synced 2025-05-17 01:47:18 +02:00
Use rcheck instead update
This commit is contained in:
parent
5318e64a64
commit
cb136ee5ae
1 changed files with 6 additions and 6 deletions
|
@ -64,10 +64,10 @@ IPT=/sbin/iptables
|
||||||
SECONDS=60
|
SECONDS=60
|
||||||
# Max connections per IP
|
# Max connections per IP
|
||||||
BLOCKCOUNT=100
|
BLOCKCOUNT=100
|
||||||
# default action can be DROP or REJECT
|
# default action can be DROP or REJECT or something else.
|
||||||
DACTION="REJECT"
|
DACTION="REJECT"
|
||||||
$IPT -A INPUT -p tcp --dport 80 -i eth0 -m state --state NEW -m recent --set
|
$IPT -A INPUT -p tcp --dport 80 -i eth0 -m state --state NEW -m recent --set
|
||||||
$IPT -A INPUT -p tcp --dport 80 -i eth0 -m state --state NEW -m recent --update --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
$IPT -A INPUT -p tcp --dport 80 -i eth0 -m state --state NEW -m recent --rcheck --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
||||||
````
|
````
|
||||||
|
|
||||||
#### EPP
|
#### EPP
|
||||||
|
@ -80,10 +80,10 @@ IPT=/sbin/iptables
|
||||||
SECONDS=60
|
SECONDS=60
|
||||||
# Max connections per IP
|
# Max connections per IP
|
||||||
BLOCKCOUNT=100
|
BLOCKCOUNT=100
|
||||||
# default action can be DROP or REJECT
|
# default action can be DROP or REJECT or something else.
|
||||||
DACTION="REJECT"
|
DACTION="REJECT"
|
||||||
$IPT -A INPUT -p tcp --dport 700 -i eth0 -m state --state NEW -m recent --set
|
$IPT -A INPUT -p tcp --dport 700 -i eth0 -m state --state NEW -m recent --set
|
||||||
$IPT -A INPUT -p tcp --dport 700 -i eth0 -m state --state NEW -m recent --update --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
$IPT -A INPUT -p tcp --dport 700 -i eth0 -m state --state NEW -m recent --rcheck --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
||||||
````
|
````
|
||||||
|
|
||||||
#### Whois
|
#### Whois
|
||||||
|
@ -96,9 +96,9 @@ IPT=/sbin/iptables
|
||||||
SECONDS=60
|
SECONDS=60
|
||||||
# Max connections per IP
|
# Max connections per IP
|
||||||
BLOCKCOUNT=100
|
BLOCKCOUNT=100
|
||||||
# default action can be DROP or REJECT
|
# default action can be DROP or REJECT or something else.
|
||||||
DACTION="REJECT"
|
DACTION="REJECT"
|
||||||
$IPT -A INPUT -p tcp --dport 43 -i eth0 -m state --state NEW -m recent --set
|
$IPT -A INPUT -p tcp --dport 43 -i eth0 -m state --state NEW -m recent --set
|
||||||
$IPT -A INPUT -p tcp --dport 43 -i eth0 -m state --state NEW -m recent --update --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
$IPT -A INPUT -p tcp --dport 43 -i eth0 -m state --state NEW -m recent --rcheck --seconds ${SECONDS} --hitcount ${BLOCKCOUNT} -j ${DACTION}
|
||||||
````
|
````
|
||||||
|
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue