-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Hello.
Toralf Förster wrote:
> Some estimation and more considerations were made in [1] and [2]
That's interesting. I suppose I could just disable the limits for other
relays and only keep the limits for non-relays. It'll be as simple as
removing "add @tor_connlimit4 { ip saddr ct count over 16 } drop" from
my nftables ruleset.
I'm waiting for the DDoS attack to subside so I can make sure there are
no false positives being caught. I wonder who is behind them and why.
Regards,
forest
-----BEGIN PGP SIGNATURE-----
iHUEARYKAB0WIQQtr8ZXhq/o01Qf/pow+TRLM+X4xgUCamhh9wAKCRAw+TRLM+X4
xieMAP9Un2Fg033SvT2rWAiXy3A6w4lWji8ZOT8rxxkVr8Qc2QEAw3duUork6fot
SC5e2WepEMLjJ1okyATqYPJN1HBY4QY=
=DjcY
-----END PGP SIGNATURE-----
_______________________________________________
tor-relays mailing list -- [email protected]
To unsubscribe send an email to [email protected]