If the correct iptables rule?

0 like 0 dislike
6 views
Hello,

iptables-t mangle -A POSTROUTING -s 111.0.0.0/8 -p tcp --dport 25 -m state --state NEW-m recent --name SMTP --update --seconds 30 --hitcount 1 -j LOG --log-prefix "Recent30sec1: "

The output from /var/log/message, nothing.
Check: create a telnet screen smtp.yandex.ru a lot of times.
The purpose of in excess for example in a minute 201 connections on port 25 with such a network to send a drop, while these connections will not be 200
by | 6 views

1 Answer

0 like 0 dislike
Can PREROUTING policy, time's filter?

In General, such a complex rule should be otlivami. First, to ensure that one criterion in the log is dropped (-s xxx-p nn), then add the second, etc. will be Immediately clear where plugging.
by

Related questions

0 like 0 dislike
1 answer
asked Jun 8, 2019 by caramingo
0 like 0 dislike
1 answer
0 like 0 dislike
1 answer
0 like 0 dislike
3 answers
0 like 0 dislike
2 answers
asked Apr 21, 2019 by Alexander777xx
110,608 questions
257,186 answers
0 comments
33,901 users