[tor-relays] connlimit: better to use "DROP" or "REJECT --reject-with tcp-reset"?

teor teor2345 at gmail.com
Thu Jan 11 23:20:51 UTC 2018

> On 12 Jan 2018, at 08:46, Toralf Förster <toralf.foerster at gmx.de> wrote:
>> On 01/11/2018 02:10 AM, teor wrote:
>> As far as I can tell, this single rule has the same effect:
> Even if " -P INPUT   DROP" is et ?

I think that applying the single rule to the default config,
has the same effect as applying all the rules you specified,
including " -P INPUT DROP".

But I'm not sure, I don't have much iptables experience.


