script for tcp limit

  1. namaste

    namaste LI Guru Member

    I am using this script in my firewall section.

    iptables -I FORWARD -s -p tcp -m connlimit --connlimit-above 30 -j DROP

    So, basically it should drop all connections above 30. But it doesnt. Any idea why?
    Here are the screenshots:



    Router buffalo whr g54s
    firmware 1.13.
  2. u3gyxap

    u3gyxap Network Guru Member

    Don't worry, it does stop them growing to more than 30. Most of the connections shown are expired.
  3. namaste

    namaste LI Guru Member

    then why does in qos graph it shows me 78 and also in counter track page it shows me like 110. Why? then u mean to say qos and counter track is not accurate enough?
