Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- nft add table filter
- nft add chain filter input {type filter hook input priority 0\;}
- ----------
- Attempt 1:
- ----------
- nft add rule inet filter input ct state new tcp dport 22 meter rate_limit \{ ip saddr limit rate 10/second \} accept
- Error: Could not process rule: No such file or directory
- add rule inet filter input ct state new tcp dport 22 meter rate_limit { ip saddr limit rate 10/second } accept
- ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
- ---------
- Attept 2:
- ---------
- nft add rule inet filter input tcp dport 22 ct state new meter \{ ip saddr limit rate 10/second \} accept
- Error: syntax error, unexpected '{', expecting string
- add rule inet filter input tcp dport 22 ct state new meter { ip saddr limit rate 10/second } accept
- ^
- ---------
- Attempt 3:
- ---------
- nft add set filter rate_limit { type ipv4_addr\; flags constant, interval \;}
- nft add rule inet filter input tcp dport 22 ct state new meter rate_limit \{ ip saddr limit rate 10/second \} accept
- Error: Could not process rule: No such file or directory
- add rule inet filter input tcp dport 22 ct state new meter rate_limit { ip saddr limit rate 10/second } accept
- ^^^^^^^^
- Error: Could not process rule: No such file or directory
- add rule inet filter input tcp dport 22 ct state new meter rate_limit { ip saddr limit rate 10/second } accept
- ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
- ---------
- Attempt 4:
- ---------
- nft list ruleset
- table ip filter {
- set rate_limit {
- type ipv4_addr
- flags constant,interval
- }
- chain input {
- type filter hook input priority 0; policy accept;
- }
- }
- nft add rule inet filter input ct state new tcp dport \{22, 2222\} meter rate_limit \{ ip saddr . tcp dport limit rate over 10/minute \} drop
- Error: Could not process rule: No such file or directory
- add rule inet filter input ct state new tcp dport {22, 2222} meter rate_limit { ip saddr . tcp dport limit rate over 10/minute } drop
- ^^^^^^^^^^
- Error: Could not process rule: No such file or directory
- add rule inet filter input ct state new tcp dport {22, 2222} meter rate_limit { ip saddr . tcp dport limit rate over 10/minute } drop
- ^^^^^^^^^^
- Error: Could not process rule: No such file or directory
- add rule inet filter input ct state new tcp dport {22, 2222} meter rate_limit { ip saddr . tcp dport limit rate over 10/minute } drop
- ^^^^^^^^^^^^^^^^^^^^
- Error: Could not process rule: No such file or directory
- add rule inet filter input ct state new tcp dport {22, 2222} meter rate_limit { ip saddr . tcp dport limit rate over 10/minute } drop
- ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
- ---------
- Attempt 5:
- ---------
- nft add rule inet filter input tcp dport 22 ct state new meter \{ ip saddr limit rate 10/second \}
- Error: syntax error, unexpected '{', expecting string
- add rule inet filter input tcp dport 22 ct state new meter { ip saddr limit rate 10/second }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement