Ron Mansolino on 17 Jul 2013 07:16:20 -0700

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[PLUG] iptables: dropping bogus application-level content

I'm trying to figure out a way to avoid having Apache process/log bogus requests.
(my "dev" server collects a lot of bullshit from around the globe that I have no need to service,
and I'm not worried about a performance hit). For example this doesn't work:

-A INPUT -p tcp -m tcp --dport 80 -m string --string "ZmEu" --algo bm --to 999 -j DROP

What is a more proper way to drop bogus agents, requests, etc?
I don't want to do this with mod_rewrite.


Philadelphia Linux Users Group         --
Announcements -
General Discussion  --