Re: read ACL to block ip's from file to prevent DDoS?

2014-09-15 Thread Marc Cortinas Val
Hello, First of all, congratulations, I think modify ACL in runtime within reload all daemon configuration is a big HIT. For other hand, I applied ipabuser cal with keymap managing it with socat and it works fine, but it is NOT permanent when daemon is restarted. it could be an option

Re: read ACL to block ip's from file to prevent DDoS?

2014-01-15 Thread david rene comba lareu
Hi, awesome ! thanks for the help, i'm gonna try it asap :D Regards. 2014/1/15 Thierry FOURNIER tfourn...@exceliance.fr: Hi, Now you can use map for your needs. The maps can be manipulated via the stats socket. The identifier of the map is the file name: acl abuser

Re: read ACL to block ip's from file to prevent DDoS?

2014-01-13 Thread Baptiste
Hi David, You can tell HAProxy to load IPs from a file in a acl. IE: acl abuser src -f /etc/haproxy/abusers.lst And place one IP per line in the abusers.lst file. Hope this helps. Baptiste On Sun, Jan 12, 2014 at 12:45 AM, david rene comba lareu shadow.of.sou...@gmail.com wrote: Hi, i'm