Iptables limit flag usageiptables rules to block ssh remote forwarded portsIptables not persisting after reboot on CentOS 6.2IPTables quota not working on Ubuntu 12.04iptables 1.4 and passive FTP on custom portCentOS6 Iptables deletes rule after 24 hourIptables - Port forwarding has no effectiptables unknown option `--connlimit-upto'How do I add a mangle rule to my saved iptables firewall rules file?Centos 7 save iptables settings (port forwarding)IPTables + Limit module: Why doesn't limit-burst get completely used?
If I create magical darkness with the Silent Image spell, can I see through it if I have the Devil's Sight warlock invocation?
Self-Preservation: How to DM NPCs that Love Living?
Is floating in space similar to falling under gravity?
Understanding STM32 datasheet regarding decoupling capacitors
Expenditure in Poland - Forex doesn't have Zloty
Why is there a need to modify system call tables in linux?
How can I offer a test ride while selling a bike?
Adding strings in lists together
What is the intuition behind uniform continuity?
Why were the Night's Watch required to be celibate?
Do creatures all have the same statistics upon being reanimated via the Animate Dead spell?
What does "tea juice" mean in this context?
Is there an evolutionary advantage to having two heads?
Rotated Position of Integers
Looking after a wayward brother in mother's will
60s (or earlier) short story where each colony has one person who doesn't connect well with others who is there for being able to absorb knowledge
Tic-Tac-Toe for the terminal
If a problem only occurs randomly once in every N times on average, how many tests do I have to perform to be certain that it's now fixed?
When a current flow in an inductor is interrupted, what limits the voltage rise?
Fastest way to perform complex search on pandas dataframe
How should I push back against my job assigning "homework"?
The deliberate use of misleading terminology
Different PCB color ( is it different material? )
Team member doesn't give me the minimum time to complete a talk
Iptables limit flag usage
iptables rules to block ssh remote forwarded portsIptables not persisting after reboot on CentOS 6.2IPTables quota not working on Ubuntu 12.04iptables 1.4 and passive FTP on custom portCentOS6 Iptables deletes rule after 24 hourIptables - Port forwarding has no effectiptables unknown option `--connlimit-upto'How do I add a mangle rule to my saved iptables firewall rules file?Centos 7 save iptables settings (port forwarding)IPTables + Limit module: Why doesn't limit-burst get completely used?
.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;
I've tried adding a iptable rule
sudo iptables -A COUNTER -m limit -n --limit 1024/sec --limit-burst 1024 -j ACCEPT
But when i try to see the rules using iptables-save -c or iptables -nvxL the output is
-A COUNTER -m limit --limit 1111/sec --limit-burst 1024 -j ACCEPT
I'm unable to understand how the 1024/s is getting translated to 1111/sec
I've tried with other limits also and few of the limits are getting changed.Can anyone explain what is happening
Similarly if i try with 900/sec it is getting translated to 909/sec
iptables firewall linux-networking
add a comment |
I've tried adding a iptable rule
sudo iptables -A COUNTER -m limit -n --limit 1024/sec --limit-burst 1024 -j ACCEPT
But when i try to see the rules using iptables-save -c or iptables -nvxL the output is
-A COUNTER -m limit --limit 1111/sec --limit-burst 1024 -j ACCEPT
I'm unable to understand how the 1024/s is getting translated to 1111/sec
I've tried with other limits also and few of the limits are getting changed.Can anyone explain what is happening
Similarly if i try with 900/sec it is getting translated to 909/sec
iptables firewall linux-networking
I'm guessing it has something to do withCREDITS_PER_JIFFY
, and particularly the scaling that is done inuser2credits
, innet/netfilter/xt_limit.c
.
– womble♦
May 16 at 4:23
add a comment |
I've tried adding a iptable rule
sudo iptables -A COUNTER -m limit -n --limit 1024/sec --limit-burst 1024 -j ACCEPT
But when i try to see the rules using iptables-save -c or iptables -nvxL the output is
-A COUNTER -m limit --limit 1111/sec --limit-burst 1024 -j ACCEPT
I'm unable to understand how the 1024/s is getting translated to 1111/sec
I've tried with other limits also and few of the limits are getting changed.Can anyone explain what is happening
Similarly if i try with 900/sec it is getting translated to 909/sec
iptables firewall linux-networking
I've tried adding a iptable rule
sudo iptables -A COUNTER -m limit -n --limit 1024/sec --limit-burst 1024 -j ACCEPT
But when i try to see the rules using iptables-save -c or iptables -nvxL the output is
-A COUNTER -m limit --limit 1111/sec --limit-burst 1024 -j ACCEPT
I'm unable to understand how the 1024/s is getting translated to 1111/sec
I've tried with other limits also and few of the limits are getting changed.Can anyone explain what is happening
Similarly if i try with 900/sec it is getting translated to 909/sec
iptables firewall linux-networking
iptables firewall linux-networking
asked May 16 at 3:01
NarenNaren
1
1
I'm guessing it has something to do withCREDITS_PER_JIFFY
, and particularly the scaling that is done inuser2credits
, innet/netfilter/xt_limit.c
.
– womble♦
May 16 at 4:23
add a comment |
I'm guessing it has something to do withCREDITS_PER_JIFFY
, and particularly the scaling that is done inuser2credits
, innet/netfilter/xt_limit.c
.
– womble♦
May 16 at 4:23
I'm guessing it has something to do with
CREDITS_PER_JIFFY
, and particularly the scaling that is done in user2credits
, in net/netfilter/xt_limit.c
.– womble♦
May 16 at 4:23
I'm guessing it has something to do with
CREDITS_PER_JIFFY
, and particularly the scaling that is done in user2credits
, in net/netfilter/xt_limit.c
.– womble♦
May 16 at 4:23
add a comment |
0
active
oldest
votes
Your Answer
StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "2"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);
else
createEditor();
);
function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);
);
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f967492%2fiptables-limit-flag-usage%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
0
active
oldest
votes
0
active
oldest
votes
active
oldest
votes
active
oldest
votes
Thanks for contributing an answer to Server Fault!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f967492%2fiptables-limit-flag-usage%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
I'm guessing it has something to do with
CREDITS_PER_JIFFY
, and particularly the scaling that is done inuser2credits
, innet/netfilter/xt_limit.c
.– womble♦
May 16 at 4:23