Jump to content

ANTI DDOS


bombajack

Recommended Posts

If you have some idea what you are doing with Linux/Unix stick a box in front of your server then use Netfilter/iptables.  SNORT can also be used if you feeling frisky. OR get a decent host :-) most of them will be using a mix of Netfilter/iptables/SNORT anyway on a router up stream.  If your lucky they may be using hardware based ASIC devices but as most of them run into the £500k mark probably not ;-)

Link to comment
Share on other sites

If you have some idea what you are doing with Linux/Unix stick a box in front of your server then use Netfilter/iptables.  SNORT can also be used if you feeling frisky. OR get a decent host :-) most of them will be using a mix of Netfilter/iptables/SNORT anyway on a router up stream.  If your lucky they may be using hardware based ASIC devices but as most of them run into the £500k mark probably not ;-)

I unfortunately don't think you can do a lot versus a distributed high bandwidth data flood attack like that without seriously expensive hardware.

Link to comment
Share on other sites

bombajack,

 

Mikrotik are OK routers however they will only take so much, you best bet is to ask you hosting provider (who can suck it up) to add some perimeter ACL's (access control lists) to drop the traffic before it hits you. 

 

The joys of hosting.. You pay for the bandwidth even the packet request that you don't want you still pay for :-)

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Advertisement
  • Discord

×
×
  • Create New...