3 ms·
Nginx has an assortment of options to rate limit people/bots. [1] For the 10% not using a user-agent generic rate limits could be applied based on volume limit
by LinuxBender 2y ago
Nginx has an assortment of options to rate limit people/bots. [1] For the 10% not using a user-agent generic rate limits could be applied based on volume limit_rate_after. One would have to get creative with nginx maps. Another option would be to calculate patterns in your access logs and just blackhole or ipset reject IP addresses or networks that are abusive accepting some of them may be abusive humans vs abusive bots.
[1] - https://serverfault.com/questions/639671/nginx-how-to-limit-request-rate-based-on-user-agent https://serverfault.com/questions/639671/nginx-how-to-limit-...