limiting connections per IP w/FreeBSD ftpd?

From: Andrew Gallatin (gallatin_at_cs.duke.edu)
Date: 05/30/03

  • Next message: Simon L. Nielsen: "Re: limiting connections per IP w/FreeBSD ftpd?"
    Date: Fri, 30 May 2003 09:25:31 -0400 (EDT)
    To: freebsd-net@freebsd.org
    
    

    At my company, some bonehead (not sure if it was maliciousness or just
    a stupid customer), opened 60 simultaneous connections to our ftp
    server and totally swamped our T1. This is the second or third time
    this has happened recently.

    So I'm looking for some way to limit the number of connections per-IP.
    I understand this may be bad for sites behind NAT boxes, or for
    multiuser systems, and I don't want to start a thread debating its
    merits.

    I'd like to avoid downgrading to one of the swiss-army knife ftpds
    that always seems to have a vulnerability in the headlines, but I
    don't have time to hack FreeBSD ftpd myself.

    So: Does anybody have patches to allow FreeBSD's ftpd to limit
    connections per IP? Or am I stuck with proftpd or wuftpd

    Thanks,

    Drew

    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"


  • Next message: Simon L. Nielsen: "Re: limiting connections per IP w/FreeBSD ftpd?"

    Relevant Pages

    • Re: FTP server
      ... FTPD: Starting Ftp server ... FTPD: Received 1 incoming connections!! ... ScheduleEvent() - cookie = 1 ...
      (microsoft.public.windowsce.embedded)
    • Re: limiting connections per IP w/FreeBSD ftpd?
      ... > a stupid customer), opened 60 simultaneous connections to our ftp ... This is the second or third time ... > So I'm looking for some way to limit the number of connections per-IP. ... > don't have time to hack FreeBSD ftpd myself. ...
      (freebsd-net)
    • Re: FTP server
      ... FTPD: Starting Ftp server ... FTPD: Received 1 incoming connections!! ... ScheduleEvent() - cookie = 1 ...
      (microsoft.public.windowsce.embedded)
    • diagnosing FTPD
      ... From couple of days I see entries in my /var/log/messages ... Currently there are about 200 connections and all is ok - ftpd is ... no coredump or big load. ... My assumptions is that hosts open too many connections and on closing ...
      (freebsd-questions)
    • Re: SBS 2003 IIS BASED SERVICES FAIL INTERMITTENTLY
      ... If I read your post correctly, you have a switch where the SBS ... Run DHCP server on your SBS, and set all client machine nics to dynamic. ... Once you have your nics configured, run the Connect to the Internet wizard, ... QUESTION1 - what is REFUSING CONNECTIONS? ...
      (microsoft.public.windows.server.sbs)