From e81fdbbf540dac50e68b00eda6dac77bb58e8935 Mon Sep 17 00:00:00 2001 From: "/C=DE/ST=Berlin/L=Berlin/O=Netfilter Project/OU=Development/CN=kaber/emailAddress=kaber@netfilter.org" Date: Mon, 29 May 2006 22:59:13 +0000 Subject: [PATCH] trivial connlimit manpage fix (Phil Oester ) --- extensions/libipt_connlimit.man | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'extensions') diff --git a/extensions/libipt_connlimit.man b/extensions/libipt_connlimit.man index 404ee32..55e53d1 100644 --- a/extensions/libipt_connlimit.man +++ b/extensions/libipt_connlimit.man @@ -10,10 +10,10 @@ group hosts using mask Examples: .TP # allow 2 telnet connections per client host -iptables -p tcp --syn --dport 23 -m connlimit --connlimit-above 2 -j REJECT +iptables -A INPUT -p tcp --syn --dport 23 -m connlimit --connlimit-above 2 -j REJECT .TP # you can also match the other way around: -iptables -p tcp --syn --dport 23 -m connlimit ! --connlimit-above 2 -j ACCEPT +iptables -A INPUT -p tcp --syn --dport 23 -m connlimit ! --connlimit-above 2 -j ACCEPT .TP # limit the nr of parallel http requests to 16 per class C sized \ network (24 bit netmask) -- cgit v1.2.3