Forum Discussion
Alberto_Peretti
Nimbostratus
May 27, 2010Limit connections from the same IP address
Hello,
I'm trying to write an iRule to be able to limit the number of TCP connections established on a virtual server per single IP address. On the code share I see that there is an iRule that should do this, but on my enviroment it doesn't work. I have 2 BigIPs 3600 running version 10.0.1. If I use this iRule I see that the connections are properly counted but once I reach the limit defined in the iRule the same IP address can still establishes new connections on the same viryual server.
- Hamish
Cirrocumulus
What do your logs say? - Alberto_Peretti
Nimbostratus
The log seems to work properly. I mean that I can see the counter incrementing while the same IP address establishes connections to a virtual server. For example I set the limit to 3 connections and I see the counter reach 5 connections established - Keith_106951
Nimbostratus
Can you share an example of the iRule in question? - Alberto_Peretti
Nimbostratus
This is the iRule limited ti ip adress 10.10.10.110: - hoolio
Cirrostratus
10.10.10.110 is in the whitelist so by design, it wouldn't ever get limited. Can you either remove 10.10.10.110 from the whitelist or test from a different client IP address? - Alberto_Peretti
Nimbostratus
OK, now it works. the IP address of my pc was in the white list.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects