[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [SAGE] Limiting outbound connections with a reverse proxy?



On 1/2/08, Marco Marongiu wrote:

 Therefore, iptables could be an option on the source machine, but on the
 target it wouldn´t. Nor ipfw would be on both.

Right, but you could also have firewall rules on the proxy server, too.

 Therefore, the proxy (or whatever it will be) needs to accept N
 connections per second, and dispatch them at a maximum rate of 10
 conn/sec, enqueing the exceeding ones until they can be dispatched,
 possibly using a FIFO policy.

That is a conundrum. I guess you could always write your own application-specific proxy for this sort of thing.

--
Brad Knowles <brad@xxxxxxxxxxxxxxxxx>
LinkedIn Profile: <http://tinyurl.com/y8kpxu>