1) We maybe assume that kind of clients won't connect to server
at "same" time. However, what about server got restarted with clients
reconnect at "same" time? Load the connection filter  after server starts 10
mins? ^^
2) Never use connection filter and we assume there is no such a malicious
attack?

On Thu, May 22, 2008 at 5:53 AM, Daniel Wirtz <[EMAIL PROTECTED]> wrote:

> 2008/5/21 Steve Johns <[EMAIL PROTECTED]>:
>
> > Any hardware like firewall does the trick?
>
>
> A hardware firewall will also use the remote address. This is a problem
> caused by the nature of NAT. I also don't see a clean solution to make a
> difference between clients that reside behind a NAT, so the Mina user will
> have to set the throttle filter to a apropriate value that does not block
> "good" NATs but does block "very bad" ips.
>
> regards
> Daniel
>

Reply via email to