|
大家看看下面的这两种限制每ip最大50链接数的写法是否等效:
第一种:
iptables -I FORWARD -m iprange --src-range 192.168.1.2-192.168.1.14 -p tcp -m connlimit --connlimit-above 50 -j DROP
第二种:
iptables -I FORWARD -s 192.168.1.2 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.3 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.4 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.5 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.6 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.7 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.8 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.9 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.10 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.11 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.12 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.13 -p tcp -m connlimit --connlimit-above 50 -j DROP
iptables -I FORWARD -s 192.168.1.14 -p tcp -m connlimit --connlimit-above 50 -j DROP
谢谢大家了 |
|