An high-performance implementation of committed access rate, or simply rate
limiting, or policing for Linux iptables. Suitable for a lot of users
(similar to ipset) and does not have qdisc limitations.
ipt-ratelimit module implements traffic policing (i.e. limiting traffic bit
rate) using, standard for this purpose, token bucket filter (TBF) algorithm.
Particular implementation is based on FreeBSD's implementation of Cisco's TBF
with extended burst value (which is used to implement RED-like drop behavior).