NHacker Next
  • new
  • past
  • show
  • ask
  • show
  • jobs
  • submit
Faster Firewalls with Bpfilter (lwn.net)
Bender 260 days ago [-]
Modules are not yet supported.

I am probably the exception but I make heavy use of several modules to block bots. I would love to try out bpfilter when they support connlimit, tcpmss, length, limit, owner, recent, set, tcp, ttl and maybe u32. In regards to performance I get some gains using NOTRACK in the raw table for ports I expect high packet rates in combination with stateless rules.

261 days ago [-]
Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
Rendered at 14:12:01 GMT+0000 (Coordinated Universal Time) with Vercel.