Filtering and TCP connection rate on WAN interface
logicom last edited by
pfSense is new to me and I would like to ask if someone could provide an example on how to do the following in pfsense:
Increase the number of possible concurrent connections and limit the rate of inbound TCP connections per remote IP (any port number), all bounded within certain time frame - rule to be applied on wan interface for ingress traffic. Source IP to be dynamically learned (possibly stored in a temporary list) , and filtering to be done (drop packet) as early as possible - before packet reach firewall packet inspection or routingng processor. Is this possible without plugins ? Is pfBlocker usable in this context ?