From 3c57745acd8b732086acbbc4da8ea594c56f0c28 Mon Sep 17 00:00:00 2001 From: Thomas Lamprecht Date: Tue, 19 Mar 2019 14:36:40 +0100 Subject: [PATCH] followup: use default burst limit of 5 it does not hurt and can be be used to see high frequeny occurences of certain rules which hit. Signed-off-by: Thomas Lamprecht --- src/PVE/Firewall.pm | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/PVE/Firewall.pm b/src/PVE/Firewall.pm index ccc5d7f..5d6de86 100644 --- a/src/PVE/Firewall.pm +++ b/src/PVE/Firewall.pm @@ -2100,7 +2100,7 @@ sub get_log_rule_base { # Note: we use special format for prefix to pass further # info to log daemon (VMID, LOGLEVEL and CHAIN) - return "-m limit --limit 1/sec --limit-burst 1 -j NFLOG --nflog-prefix \":$vmid:$loglevel:$chain: $msg\""; + return "-m limit --limit 1/sec -j NFLOG --nflog-prefix \":$vmid:$loglevel:$chain: $msg\""; } sub ruleset_add_chain_policy { -- 2.39.2