openwrtv4/package/network
Alin Nastac d8748e537f netfilter: add iptables-mod-rpfilter package
Unlike /proc/sys/net/ipv4/conf/INTF/rp_filter flag, rule iptables -t raw
-I PREROUTING -m rpfilter --invert -j DROP prevents conntrack table to
become full when a packet flood with randomly selected source IP addresses
is received from the lan side.

Signed-off-by: Alin Nastac <alin.nastac@gmail.com>
2017-07-11 22:09:57 +02:00
..
config lantiq: set up DSL front-end GPIOs if they exist 2017-07-07 07:13:24 +02:00
ipv6 dhcpv6: add missing dollar sign in dhcpv6 script (FS#874) 2017-06-29 09:56:19 +02:00
services dnsmasq: restore ability to include/exclude raw device names 2017-07-10 11:02:27 +02:00
utils netfilter: add iptables-mod-rpfilter package 2017-07-11 22:09:57 +02:00