Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
Beide Seiten der vorigen Revision Vorhergehende Überarbeitung | |||
dapnetnodeconnectionratelimit [2018/06/26 20:58] dh3wr [Countermeasures and Connection Rate Limiting] |
dapnetnodeconnectionratelimit [2018/06/26 20:59] dh3wr [Countermeasures and Connection Rate Limiting] |
||
---|---|---|---|
Zeile 5: | Zeile 5: | ||
===== Countermeasures and Connection Rate Limiting ===== | ===== Countermeasures and Connection Rate Limiting ===== | ||
- | In order to block maschines like this, the firewall at db0sda has been set up in a way, that if either | + | In order to block maschines like these, the firewall at db0sda has been set up in a way, that if either |
- | * There are more then 5 new TCP connections/minute from the same source IP to Port 43434 on dapnet.afu.rwth-aachen.de | + | * There are more than 5 new TCP connections/minute from the same source IP to Port 43434 on dapnet.afu.rwth-aachen.de |
- | * Or the first 2 kB for the traffic contain a string like //[UniPager-C9000 v.0.6.0 ]// | + | * Or the first 2 kB for the traffic contain a string like //[UniPager-C9000 v.0.6.0 ]//, |
<code>(RegEx: \[UniPager-.+\ v[0-9]+\.[0-9]+\.[0-9]\ \ \])</code> | <code>(RegEx: \[UniPager-.+\ v[0-9]+\.[0-9]+\.[0-9]\ \ \])</code> | ||