On Thu, 24 Oct 2002, YOSHIFUJI Hideaki / [iso-2022-jp] 吉藤英明 wrote:
> This patch add sysctl for icmp6 rate limit.
> This patch is against 2.4.20-pre11 (see below).
...
> +icmp/*:
> +ratelimit - INTEGER
> + Limit the maximal rates for sending ICMPv6 packets.
> + 0 to disable any limiting, otherwise the maximal rate in jiffies(1)
> + Default: 100
> +
Does this rate-limit all ICMPv6 packets or just ICMPv6 error messages (as
specified in ICMPv6 specifications).
If all, I believe the default of rate-limiting everything is unacceptable.
Note that in the patch does not seem to add the rate-limit sysctl to any
functions -- was that to happen in some other patch?
--
Pekka Savola "Tell me of difficulties surmounted,
Netcore Oy not those you stumble over and fall"
Systems. Networks. Security. -- Robert Jordan: A Crown of Swords
|