diff options
author | bmilekic <bmilekic@FreeBSD.org> | 2000-12-15 21:45:49 +0000 |
---|---|---|
committer | bmilekic <bmilekic@FreeBSD.org> | 2000-12-15 21:45:49 +0000 |
commit | e94f2430fb2b086b446da459becc9ea7f44ac5cd (patch) | |
tree | 9443c1527c0c9aa78146d857e74f4f7296a15f97 /sys/netinet/icmp_var.h | |
parent | 415f02cbaf57fb59bc31f00b3a78c1421286196e (diff) | |
download | FreeBSD-src-e94f2430fb2b086b446da459becc9ea7f44ac5cd.zip FreeBSD-src-e94f2430fb2b086b446da459becc9ea7f44ac5cd.tar.gz |
Change the following:
1. ICMP ECHO and TSTAMP replies are now rate limited.
2. RSTs generated due to packets sent to open and unopen ports
are now limited by seperate counters.
3. Each rate limiting queue now has its own description, as
follows:
Limiting icmp unreach response from 439 to 200 packets per second
Limiting closed port RST response from 283 to 200 packets per second
Limiting open port RST response from 18724 to 200 packets per second
Limiting icmp ping response from 211 to 200 packets per second
Limiting icmp tstamp response from 394 to 200 packets per second
Submitted by: Mike Silbersack <silby@silby.com>
Diffstat (limited to 'sys/netinet/icmp_var.h')
-rw-r--r-- | sys/netinet/icmp_var.h | 6 |
1 files changed, 6 insertions, 0 deletions
diff --git a/sys/netinet/icmp_var.h b/sys/netinet/icmp_var.h index 2eeef54..fd04f27 100644 --- a/sys/netinet/icmp_var.h +++ b/sys/netinet/icmp_var.h @@ -77,6 +77,12 @@ struct icmpstat { #ifdef _KERNEL SYSCTL_DECL(_net_inet_icmp); extern int badport_bandlim __P((int)); +#define BANDLIM_UNREACH 0 +#define BANDLIM_RST_NOTOPEN 1 +#define BANDLIM_RST_OPEN 2 +#define BANDLIM_ECHO 3 +#define BANDLIM_TSTAMP 4 +#define BANDLIM_MAX 4 #endif #endif |