Skip to Content
802.11 Security
book

802.11 Security

by Bob Fleck, Bruce Potter
December 2002
Intermediate to advanced
192 pages
5h 30m
English
O'Reilly Media, Inc.
Content preview from 802.11 Security

Rate Limiting

FreeBSD has an easy-to-use ability to limit the rate of a subset of traffic. This is provided by the Dummynet system. The most likely use for this in a wireless deployment is to limit how much traffic users of the wireless network can pass to the Internet. There are two steps to enabling Dummynet. First, kernel support for it has to be enabled with the following option in the kernel configuration:

options DUMMYNET

After compiling the kernel with that option, two new rules have to be added at the start of our firewall script. These two rules should be placed after the variable definitions, but before all of the other add rules:

${fwcmd} add pipe 1 ip from ${wif} to any via ${oif}
${fwcmd} pipe 1 config bw 100Kbit/s

The first rule creates a new pipe that will channel all traffic from the wireless interface to the outside interface. The second rule configures that pipe with a bandwidth (bw) limitation of 100 KBit/s. This number can be adjusted to reflect how much bandwidth the wireless network should have access to.

The first rule, the one that creates the pipes, will show up with all the other rules when the ipfw list command is given. To see the actual configuration of pipes however, ipfw pipe list needs to be used.

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Applied Network Security

Applied Network Security

Warun Levesque, Arthur Salmon, Michael McLafferty
Cisco Wireless LAN Security

Cisco Wireless LAN Security

Sri Sundaralingam, Krishna Sankar, Darrin Miller, Andrew Balinsky

Publisher Resources

ISBN: 0596002904Catalog PageErrata