Le script limit-match.txt
est un
mirroir du script test qui vous permet de tester la correspondance
limit et de voir comment elle fonctionne. Chargez ce script, et
ensuite envoyez des paquets à différents intervalles. Toutes les
réponses seront bloquées jusqu'à ce que le seuil limite soit
atteint.
#!/bin/bash # # limit-match.txt - Example rule on how the limit match could be used. # # Copyright (C) 2001 Oskar Andreasson <bluefluxATkoffeinDOTnet> # # This program is free software; you can redistribute it and/or modify # it under the terms of the GNU General Public License as published by # the Free Software Foundation; version 2 of the License. # # This program is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU General Public License for more details. # # You should have received a copy of the GNU General Public License # along with this program or from the site that you downloaded it # from; if not, write to the Free Software Foundation, Inc., 59 Temple # Place, Suite 330, Boston, MA 02111-1307 USA # iptables -A INPUT -p icmp --icmp-type echo-reply -m limit --limit \ 3/minute --limit-burst 5 -j DROP