You can install a module to limit number of connexion by ip.
5 is a good limitation, a browser normaly can't open more than 5 connexion.
http dominia.org/djao/limitipconn.html
That limit the impact of this type attack.
Fail2ban can help you too.
If this 404 pages, you can add rule to block ip with too much 404 / min for example
wich that help you
|