4 ms·
I wouldn’t bother with iptables. I’ve done it before and it quickly gets overrun on any large scale attacks. Cloudflare on your front end will stop a lot of gar
by eeeeeeeeeeeee 7y ago
I wouldn’t bother with iptables. I’ve done it before and it quickly gets overrun on any large scale attacks. Cloudflare on your front end will stop a lot of garbage and take the brunt of volumetric attacks, or use nginx/varnish/haproxy to rate limit and or block attackers before they reach your app.
- Funnnny 7y agocloudflare used to use iptables with SYNPROXY, simple blocking rule and later BPF matching. Your server would be dead in any large scale attack anyway, iptables is fine and works well
- deleted 7y ago[deleted]