Jump to content

H Gnwmh Mou Gia To Interlude.


Recommended Posts

ti firewall kai software re, to ddos mono me hardware linete

 

Apolito dikio exei o xdem , Palia to ssyn syn , http , post , get , kai tetiou idous scripts mporouses na ta kopsis me kapio firewall kala ri8mismeno , stis meres mas otan ta stressers(dedi pou skane to attack) Exoun ftasi to ka8ena 1gbps ka8ara kai 10gbps polles fores , ta opia epitrepoun me 1gbps na stileis 200k packets per second kai me 10gbps , 2milion packets per seconds to software dn sou kanei apolitos tupota , sovareutite osoi psaxnete sto google fail old topic sxetika me iptables ktlpa , ean den to exete psa3ei stin pra3ei , min postarete tpt me sigouria , apla eleos.

Link to comment
Share on other sites

Kapios milise gia DNS Amp list pou kikloforei sto net ...

 

If it's public, it's used by everyone. And when it's used by everyone for DDoS, good luck getting up to that Gbps you imagine ;)

 

Episis, exei ksekinisei olokliros marathonios na enhmerothoun oi admins ton DNS servers gia to problima kai na kanoun tous servers na dexonte requests mono apo to diktio pou eksipiretoun. Oi meres tou DNS Amplification DDoS einai metrimenes ...

 

Mathame tora oloi na kikloforoume thn lista me ta anoixta DNS les kai einai h lista lagard ...

Link to comment
Share on other sites

Kapios milise gia DNS Amp list pou kikloforei sto net ...

 

If it's public, it's used by everyone. And when it's used by everyone for DDoS, good luck getting up to that Gbps you imagine ;)

 

Episis, exei ksekinisei olokliros marathonios na enhmerothoun oi admins ton DNS servers gia to problima kai na kanoun tous servers na dexonte requests mono apo to diktio pou eksipiretoun. Oi meres tou DNS Amplification DDoS einai metrimenes ...

 

Mathame tora oloi na kikloforoume thn lista me ta anoixta DNS les kai einai h lista lagard ...

 

To na xrisimopieis public list einai mega la8os opos to les kai esu , polu apla uparxei aplo scanneraki pou tou dineis kapies plirofories kai psaxnei san skili mono tou , stin ousia ti kanei? Prospa8ei ana ip na dei ean to server auto einai up , kai ean epitrepei dns amplification .

 

8a doso ena paradigma , se ena dedi 1gbps pou exw ekana scan px . 216.1.1.1 mexri 216.255.255.255 , teliose tosous sundiasmous mesa se 10 wres ean 8imame kala kai evgala mia lista ka8ari me 50k + ips ta opia epitrepoun dns amplification .

 

Opote upologize ean trexeis mera nuxta gia 1 mhna , poses ka8ares dns amplification(allowed) ips that vreis..

Link to comment
Share on other sites

To na xrisimopieis public list einai mega la8os opos to les kai esu , polu apla uparxei aplo scanneraki pou tou dineis kapies plirofories kai psaxnei san skili mono tou , stin ousia ti kanei? Prospa8ei ana ip na dei ean to server auto einai up , kai ean epitrepei dns amplification .

 

8a doso ena paradigma , se ena dedi 1gbps pou exw ekana scan px . 216.1.1.1 mexri 216.255.255.255 , teliose tosous sundiasmous mesa se 10 wres ean 8imame kala kai evgala mia lista ka8ari me 50k + ips ta opia epitrepoun dns amplification .

 

Opote upologize ean trexeis mera nuxta gia 1 mhna , poses ka8ares dns amplification(allowed) ips that vreis..

 

varane me slaves ta booter tora, kai ante na 3exoriseis pia packets erxonte l2client kai pia apo booter, o gameserver 9a ta 3exorisei vevea ala ama ftasoune ta packets mexri to GS 9a exei pesei idi to dedi ;D

Link to comment
Share on other sites

Ehm to DNS Amplification einai mono UDP, den exei sxesh me thn porta tou gameserver. Den mporeis na kaneis DNS Amplification se oti porta thes, oute se oti protokolo thes. H DNS Amplification einai h pio efkoli epithesh na ginei mitigate apo DDoS protection service me thn proypothesh oti exoun to katallilo bandwidth. Mono gia bandwidth chocking kanei h DNS methodos.

Link to comment
Share on other sites

Ehm to DNS Amplification einai mono UDP, den exei sxesh me thn porta tou gameserver. Den mporeis na kaneis DNS Amplification se oti porta thes, oute se oti protokolo thes. H DNS Amplification einai h pio efkoli epithesh na ginei mitigate apo DDoS protection service me thn proypothesh oti exoun to katallilo bandwidth. Mono gia bandwidth chocking kanei h DNS methodos.

 

Me liga logia gia na katali3oume kapou , to 8ema einai apoklistika eteriko , kai oxi prosopiko gia tin asfalia tou server kata twn ddos epi8esewn.

 

Kai liges eteries stis meres mas tin paleuoun kai antexoun pola gbps ka8aro bandwidth , Edw i voxility eixe pesu apo botnet ..

 

Opios pantos skeftete na sikosi server pou na ante3ei kai na a3izei prepei na valei to xeri va8ia , kai na pei i softlayer me ta addons , i dragonara (mia apo tis kaliteres ddos protection eteries kai sxetika koble times , se sxesh me akires eteries pou pane na poulisoun mono se megales eteries kai oxi idiotes , giati an einai na plironeis 1000$ kai gia na exeis enan l2 server me ddos protection xerw polu.

Link to comment
Share on other sites

H na baloume oloi tous server mas piso apo ena reverse proxy mixanima, to opio tha to exoume ddos protected ;) Etsi tha moirazomaste to kostos. Anyway pera apo to asteio :

 

H apopsh mou einai oti DDoS protection den bazeis otan ksekinas ton sever sou. An o server piasei kosmo, tote sigoura tah exeis DDoS opote tha baleis kai protection. Alla me kosmo tha exeis kai xrimata na to pliroseis opote den einai megali ipothesh.

 

Tora an kapios paei kai kanei ddos se server me 10 atoma online, den nomizo exei kai noima na kratas server anoixto me tetio player count.  Kai prepei na einai kai poly komplexaras kapios gia na kanei ddos se tetio server :P

Link to comment
Share on other sites

H na baloume oloi tous server mas piso apo ena reverse proxy mixanima, to opio tha to exoume ddos protected ;) Etsi tha moirazomaste to kostos. Anyway pera apo to asteio :

 

H apopsh mou einai oti DDoS protection den bazeis otan ksekinas ton sever sou. An o server piasei kosmo, tote sigoura tah exeis DDoS opote tha baleis kai protection. Alla me kosmo tha exeis kai xrimata na to pliroseis opote den einai megali ipothesh.

 

Tora an kapios paei kai kanei ddos se server me 10 atoma online, den nomizo exei kai noima na kratas server anoixto me tetio player count.

Kalhspera kai apo mena paidia....diabasa ligaki ti paizete kai 8a h8ela na kanw mia parembash dior8wnontas ligo ton Kir. Leluce.

 

Prwsopika oso gnwrizo kai exoune dei ta matakia m....iparxoune arketoi oi opioi kanoyne ddos kai apo to G.O.

Ok mporeis na mou peis, oti o allos mporei na balei ddos protection apo to G.O. Alla opws eipes kai parapanw...ama dn exei atoma..tote tzampa ta lefta tou....alliws mporei na piasei ok.

Epishs kai enas xwris ddos sto G.O mporei na piasei atoma kai na balei argotera afou dei oti o srv tou 8a exei enan OK ari8mo apo players.

Ela omws kai na piasei atoma..bgainoune 2-3 kai barane ddos sta prwta lepta (oi pio polloi p to kanoune auto, ine kati owners me servers pou tsouzei (_0_). Anw kala kanoune..magkia tous).

 

Proswpika gia na min bgo para'e3w...mia alli lish, 8a eitane h ka8e etairia (toulaxiston oi megales), na exoune ena ddos protection TRIAL sta pc tous. Etsi wste o ka8enas na anoi3i enan server (na pros8eso oti me trial ddos se etairies pisteuw 8a trabane pio poli kosmo alla tcp), --- kai na exei 5-10 meres ena trial ddos protection. Etsi ama dei oti exei players kai "kalo support" na dwsei gia ddos protection.

 

Eyxaristw.

 

PS: (akuro), , apofeugo ta "H" gt dn pataei i mlkia.

Link to comment
Share on other sites

Kalhspera kai apo mena paidia....diabasa ligaki ti paizete kai 8a h8ela na kanw mia parembash dior8wnontas ligo ton Kir. Leluce.

 

Prwsopika oso gnwrizo kai exoune dei ta matakia m....iparxoune arketoi oi opioi kanoyne ddos kai apo to G.O.

Ok mporeis na mou peis, oti o allos mporei na balei ddos protection apo to G.O. Alla opws eipes kai parapanw...ama dn exei atoma..tote tzampa ta lefta tou....alliws mporei na piasei ok.

Epishs kai enas xwris ddos sto G.O mporei na piasei atoma kai na balei argotera afou dei oti o srv tou 8a exei enan OK ari8mo apo players.

Ela omws kai na piasei atoma..bgainoune 2-3 kai barane ddos sta prwta lepta (oi pio polloi p to kanoune auto, ine kati owners me servers pou tsouzei (_0_). Anw kala kanoune..magkia tous).

 

Proswpika gia na min bgo para'e3w...mia alli lish, 8a eitane h ka8e etairia (toulaxiston oi megales), na exoune ena ddos protection TRIAL sta pc tous. Etsi wste o ka8enas na anoi3i enan server (na pros8eso oti me trial ddos se etairies pisteuw 8a trabane pio poli kosmo alla tcp), --- kai na exei 5-10 meres ena trial ddos protection. Etsi ama dei oti exei players kai "kalo support" na dwsei gia ddos protection.

 

Eyxaristw.

 

PS: (akuro), , apofeugo ta "H" gt dn pataei i mlkia.

 

Kalh i idea sou , alla oi eteries kitane to sumferon tous .. Den tous niazoun oi aploi polites(individuals) , tous niazoun oi megales eteries pou diafeugoun gia ddos protection , dioti me tis megales eteries einai pou ploutizoun xwreis idieteri kourasi apo merous tous , skepsou na eixane 1000 pelates pou na anoigane diafora servers.. cs servers lineage2 wow kai alla polla skepsou posa attacks apanota 8a dexotane to ddos protected network tous eite apo stressers eite apo botnets .. 8a vazane se kindino tous poliagapimenous kai poliplirotes pelates tous.

Link to comment
Share on other sites

Kalh i idea sou , alla oi eteries kitane to sumferon tous .. Den tous niazoun oi aploi polites(individuals) , tous niazoun oi megales eteries pou diafeugoun gia ddos protection , dioti me tis megales eteries einai pou ploutizoun xwreis idieteri kourasi apo merous tous , skepsou na eixane 1000 pelates pou na anoigane diafora servers.. cs servers lineage2 wow kai alla polla skepsou posa attacks apanota 8a dexotane to ddos protected network tous eite apo stressers eite apo botnets .. 8a vazane se kindino tous poliagapimenous kai poliplirotes pelates tous.

Exeis dikio. Alla apo tin allh "san etairies" kai autoi , prepi na kanoyne kati kai gia autous pou dn "exoune" to toso xrhma poy zitite gia ena ddos protection or/.

Mporw na protino apires idees (mias kai asxoloumai san supporter ticket se 2 etairies)...alla pios 8a tis akousei. To exw protini hdh stis dikies mou alla dn pernw apanthsh.

Pisteuw oti oloi mas mporoune na protinoume kati, alla 8a paei xameno to grapsimo.

Link to comment
Share on other sites

As far as i know ta 10gbit ddos protection kostizoun kapou sta 8000USD kanonika.

oute kan exw psaksh polles eteries kai exo vrei kai me 400USD , kai me 300USD
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.




×
×
  • Create New...