From: Phil Oester Date: Mon, 29 May 2006 22:59:13 +0000 (+0000) Subject: trivial connlimit manpage fix (Phil Oester ) X-Git-Tag: v1.3.6~24 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=75efcae9764d2117be192a93b25e8810009aabec;p=thirdparty%2Fiptables.git trivial connlimit manpage fix (Phil Oester ) --- diff --git a/extensions/libipt_connlimit.man b/extensions/libipt_connlimit.man index 404ee327..55e53d14 100644 --- a/extensions/libipt_connlimit.man +++ b/extensions/libipt_connlimit.man @@ -10,10 +10,10 @@ group hosts using mask Examples: .TP # allow 2 telnet connections per client host -iptables -p tcp --syn --dport 23 -m connlimit --connlimit-above 2 -j REJECT +iptables -A INPUT -p tcp --syn --dport 23 -m connlimit --connlimit-above 2 -j REJECT .TP # you can also match the other way around: -iptables -p tcp --syn --dport 23 -m connlimit ! --connlimit-above 2 -j ACCEPT +iptables -A INPUT -p tcp --syn --dport 23 -m connlimit ! --connlimit-above 2 -j ACCEPT .TP # limit the nr of parallel http requests to 16 per class C sized \ network (24 bit netmask)