Problem on applying iptables rules
hello everybody,
I have a problem with iptables.WELL....wehen i put this rule Code:
iptables -A FORWARD -p udp --dport 8200 -m limit --limit-burst 6 -j DROP But when i apply dropping 6 times with only one packet Code:
iptables -A FORWARD -p udp --dport 8200 -m limit --limit-burst 1 -j DROP where is the problem pleaaaaase HELP ME. |
Can't explain that behaviour but having six similar rules in a row in one chain makes no sense: decisions are made on a "first match wins" basis. Listing your ruleset with "-vnx" should show the counters of the similar next rules stay at zero.
|
Quote:
so is there a solution for that???!!! I really need it freinds..... |
hey friends no answer on my qustion????!!!!
|
As limit uses a token bucket filter I'd say that the refresh rate is set to low. Something like this
first package is matched by rule 1 second = rule 2 . . fifth package is matched by rule 5 first rules bucket gains a token. sixth package is matched by rule 1 Maybe try with less rules to see at which point the rules misbehave |
Quote:
|
All times are GMT -5. The time now is 01:23 PM. |