[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] Dom 0 firewall



Hi Thomas,

> If others have some ideas to implement in this general purpose anti-DoS
> firewall script, I'd be VERY happy to have contributions.

The default setting for ip_pkt_list_tot is 20 which means that having 
--hitcount set greater than 20 will always fail. You can increase this setting 
(when loading the module or at boot), but the maximum value allowed is 255.

Cheers,

Brad

Attachment: signature.asc
Description: PGP signature

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.