But more often than not UDP fragmentation floods utilize a high volume of bandwidth that is probably going to exhaust the capability of one's network card, that makes this rule optional and doubtless not quite possibly the most beneficial one particular.netfilter iptables (soon to get replaced by nftables) is actually a consumer-space command line