From mboxrd@z Thu Jan 1 00:00:00 1970 From: Jan Engelhardt Subject: Re: Can iptables or other firewall solutions can do this for me? Date: Mon, 12 Feb 2007 19:43:56 +0100 (MET) Message-ID: References: Mime-Version: 1.0 Return-path: In-Reply-To: List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: netfilter-bounces@lists.netfilter.org Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: TEXT/PLAIN; charset="us-ascii" Content-Transfer-Encoding: 7bit To: howard chen Cc: netfilter@lists.netfilter.org On Feb 12 2007 23:16, howard chen wrote: > > We have a web server, recently received a lot of requests from oversea > proxy. The requests are to spam our applications (i.e. leave > comments). They don't success, since they never get the correct > captacha. > > But the problem is: They are doing requests & requests forever (even > with no success). This lead to: > > 1. Waste of CPU time of our web server > 2. Waste of oversea bandwidth > > Can iptables or related tools or packages can do this for me? > > p.s. Since they are changing proxy all the time, so might be need a > automatic solutions, Block their proxies using TARPIT. Jan -- ft: http://freshmeat.net/p/chaostables/