On Mon, 22 Oct 2007, Mac Dearman wrote:
1. Is the packet limiting capable of identifying and limiting
specific types of traffic (i.e. P2P) or does it cast a broad net
that does a complete PPS count?
It can do the limiting either way. Actually, Mac, it can limit by
any combination of the following:
1. Source IP - (specific Ip, range of IPs or a specific IP GROUP)
2. Destination IP (same as above)
3. Inbound or outbound interface
4. Time of Day/Day of week
5. Type of Traffic
6. MANY MANY MORE
These rules are implemented using iptables, so anything (nearly)
that you can match in iptables will work as a way to limit the
impact of a limit you would place.
2. Can it identify and drop certain sized packets - such as small
UDP packets over the count of - - say - - 700pps w/payload under
60bits (likely a Virus/Trojan)
Of course!
I think I will copy Jeff Broadwick on this and see if we can get
him in on this for some clarification. Butch too may know since he
is the "people" that I am "well connected too" as well :)
I guess you let the cat out of the bag with this one. ;-)
--
Butch Evans
Network Engineering and Security Consulting
573-276-2879
http://www.butchevans.com/
My calendar: http://tinyurl.com/y24ad6
Training Partners: http://tinyurl.com/smfkf
Mikrotik Certified Consultant
http://www.mikrotik.com/consultants.html
--------------------------------------------------------------------------------
** Join us at the WISPA Reception at 6:30 PM on October the 16th 2007 at ISPCON
**
** ISPCON Fall 2007 - October 16-18 - San Jose, CA www.ispcon.com **
** THE INTERNET INDUSTRY EVENT **
** FREE Exhibits and Events Pass available until August 31 **
** Use Customer Code WSEMF7 when you register online at
http://www.ispcon.com/register.php **
--------------------------------------------------------------------------------
WISPA Wants You! Join today!
http://signup.wispa.org/
--------------------------------------------------------------------------------
WISPA Wireless List: [email protected]
Subscribe/Unsubscribe:
http://lists.wispa.org/mailman/listinfo/wireless
Archives: http://lists.wispa.org/pipermail/wireless/