Firewall rules that discriminate by connection duration

From: Brett Glass (brett_at_lariat.org)
Date: 11/10/04

  • Next message: Vlad GALU: "Re: Firewall rules that discriminate by connection duration"
    Date: Tue, 9 Nov 2004 20:10:30 -0700 (MST)
    To: freebsd-security@freebsd.org
    
    

    I'm interested in crafting firewall rules that throttle connections
    that have lasted more than a certain amount of time. (Most such
    connections are P2P traffic, which should be given a lower priority
    than other connections and may constitute network abuse.) Alas, it
    doesn't appear that FreeBSD's IPFW can keep tabs on how long a
    connection has been established. Is there another firewall for
    FreeBSD that can?

    --Brett Glass

    _______________________________________________________
    Please think twice when forwarding, cc:ing, or bcc:ing
    security-team messages. Ask if you are unsure.

    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Vlad GALU: "Re: Firewall rules that discriminate by connection duration"

    Relevant Pages

    • Re: JDBC Driver Settings
      ... >>> small amount of data that you fetch completely. ... Cloned connections use the same connection ... JTA is not supported in direct mode. ... >>> Shelby Goerlitz ...
      (microsoft.public.sqlserver.jdbcdriver)
    • Re: Max connections on a FW-1 cluster
      ... connections that FW-1 can accomodate, although this also depends on how much ... firewalls is completely irrelevant. ... amount of concurrent connections the firewallcould handle. ... It seems no-one on the FW-1 ...
      (comp.security.firewalls)
    • Re: Auto Disconnet ...
      ... After a little bit of sniffing the net I found that ALL connections from ... remote Win2k machine dies after certain amount of time. ...
      (Debian-User)
    • Re: tcp ports ftp hangs in CLOSE_WAIT state with NMAP scanner
      ... NMAP to scan the ports, my FTP server hangs with 8 connections in ... You can reproduce the same thing on Linux, ... connections would likely be higher. ... You can increase the amount of sockets available. ...
      (comp.os.vxworks)
    • Re: OT: Life On Mars
      ... >>> Azereus) utterly badgered my wireless connection. ... >>> with the amount of connections it keeps open, ... >>the amount of bandwidth in either direction it makes use of. ... it wasn't the bandwidth IIRC. ...
      (uk.rec.motorcycles)