Connection rate limits with pf, blocks too soon?

Pieter de Boer pieter at thelostparadise.com
Mon Jun 7 11:00:09 UTC 2010


On 06/07/2010 11:21 AM, Pieter de Boer wrote:

> However, when I run a scanner against this web server, the source IP is
> blocked after a few seconds and only a few tens of requests. Using
> 'pfctl -s state' I confirmed that only 65 simultaneous states were
> present, much lower than the limit.

Turns out I was looking at the wrong rule.

Sorry for the noise,
Pieter


More information about the freebsd-net mailing list