I want add to a address list the IP of my customer if it's unders DDoS (for example, 50k PPS).
This rule is adding to the address list ALL IPs, not just the IP of my customer, seems is not detecting the PPS limit.
Anybody can help me to find what is wrong?
Thanks in advance!
Code: Select all
add action=add-dst-to-address-list address-list=DDoS address-list-timeout=10s chain=forward comment="Aadir a bloqueo mas de 50000 pps" disabled=yes dst-limit=50000,60000,dst-address/10s