MLUG: RE: [MLUG] iptables rate limiting
RE: [MLUG] iptables rate limiting
Email address obfuscation in effect -- please click here to turn it off.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Rate limiting is more of a kernel based QoS facility....
You might want to check out the LARTC HowTo:
http://lartc.org/
http://lartc.org/howto/lartc.ratelimit.single.html

They don't talk about using ipchains to do traffic shaping or rate
limiting. They use some different commands. I downloaded and ran some of
them with out too much difficulty at one time. It looks like what your
friend wants to do. I think the problem is that iptables isn't stateful,
or more accurately, it doesn't have a token bucket mechanism to help
rate traffic. That's more of a QoS mechanism, but you could check out
this page for iptables if you want:

http://www.roads.lut.ac.uk/txt/proactive-iptables.html


Shannon Spurling
WAN Engineer -Specialist

MOREnet, Network Services, Core Network
3212 LeMone Industrial Blvd.
Columbia, MO 65201

Main:(573) 884-7200   Fax:(573)884-6673

EMAIL:PROTECTED
EMAIL:PROTECTED


-----Original Message-----
From: EMAIL:PROTECTED
[mailto:EMAIL:PROTECTED] On Behalf Of Jerry Gamblin
Sent: Wednesday, December 01, 2004 10:41 AM
To: MLUG Members
Subject: [MLUG] iptables rate limiting

I have a friend who has a DSL line installed and he is sharing it with
his neighbor.
He has an iptables box between the router and his network.  Does
anyone know how to rate limit an IP address in IPTABLES to 500KB out
and in?

Thanks,

Jerry
_______________________________________________
members mailing list
EMAIL:PROTECTED
http://mlug.missouri.edu/mailman/listinfo/members

_______________________________________________
members mailing list
EMAIL:PROTECTED
http://mlug.missouri.edu/mailman/listinfo/members