Count web server connections per IP address
count connections per ip linux | find ip with most connections | server slow check for ddos | ss | connections | ddosss -Htn state established '( sport = :80 or sport = :443 )' | awk '{print $4}' | rev | cut -d: -f2- | rev | sort | uniq -c | sort -rn | head -20Lists all established TCP connections to the web ports, cuts off the remote port number and counts the connections per IP. The addresses with the most simultaneous connections appear at the top. Useful when the server suddenly slows down and a crawler or attacker is suspected.
Note: If a reverse proxy or CDN sits in front, its addresses appear instead of the real visitors.
Also searched as
- count connections per ip linux
- find ip with most connections
- server slow check for ddos