CSF CONNLIMIT but for whole IP block 192.168.0.0/24

qba82

Verified User
Joined
Jun 26, 2018
Messages
66
Hi,
I would like You to ask, if it is possible config csf something like CONNLIMIT = "80;20,443;20" BUT for whole IP blocks, for example 192.168.0.0/24?

For example:
192.168.0.1 and 192.168.0.2 connecting to port 80 with 10 connections each, and with CONNLIMIT = "80;20,443;20" they will be not blocked,
now I want csf to do NOT check single IP, but whole IP 192.168.0.0/24 block, so on above example csf will count 20 connections and will temporary block 192.168.0.0/24.

is it possible with csf or any other tool?
 
Back
Top