Massive DDoS attack on dedicated server

Discussion in 'Security' started by Helado, Nov 14, 2009.

  1. #1
    Hi, somebody I know has a fairly successful site, and over the past few days somebody has launched a DDoS attack on the site. There was no protection, however the owner of the site got his host to install "Juniper" firewall. This blocked a very large amount of the attacks, but the attack was too strong and it caused a DDoS attack on the firewall, rendering it useless.

    So I'm requesting for some help on behalf of this person... they're using a Linux server. Can anybody suggest any software, free or paid, that will defend the server against this huge attack?

    Thank you.
     
    Helado, Nov 14, 2009 IP
  2. anuj17280

    anuj17280 Peon

    Messages:
    69
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #2
    I will suggest configcsf, configcsf is IDS which can be installed on linux machine. If you are running cpanel/whm you can manage configcsf through web interface than.

    http://configserver.com/cp/csf.html

    You can also PM me - if you want me to look into the matter - I will charge some money against it.

    use rkhunter and rootkit to find out the attack clause
     
    anuj17280, Nov 14, 2009 IP
  3. ilook

    ilook Well-Known Member

    Messages:
    1,602
    Likes Received:
    15
    Best Answers:
    1
    Trophy Points:
    165
    #3
    ilook, Nov 14, 2009 IP
  4. Helado

    Helado Peon

    Messages:
    696
    Likes Received:
    15
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Thanks for your replies. This attack was huge and in the end my friend had to switch host. The host he has moved to includes DDoS protection.
     
    Helado, Nov 14, 2009 IP
  5. nanggroe

    nanggroe Peon

    Messages:
    27
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #5
    I think your friend have a take a good move, save cost and time.
     
    nanggroe, Nov 15, 2009 IP
  6. ilook

    ilook Well-Known Member

    Messages:
    1,602
    Likes Received:
    15
    Best Answers:
    1
    Trophy Points:
    165
    #6
    Can you let us know wich host?
     
    ilook, Nov 16, 2009 IP
  7. Tropp

    Tropp Well-Known Member

    Messages:
    108
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    110
    #7
    There's no software that will block a decent DDoS attack.

    There are various types and models of hardware firewall (such as Juniper) some are only designed to handle smaller attacks, which is not much good if multiple Gbps are being thrown at a server.

    The types that can handle seriously large attacks are pricey.
     
    Tropp, Nov 18, 2009 IP
  8. Kelly2

    Kelly2 Peon

    Messages:
    79
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    I would try and take legal action against most, if not all of the IP addresses involved in the attack.
     
    Kelly2, Nov 18, 2009 IP
  9. digitalpoint

    digitalpoint Overlord of no one Staff

    Messages:
    38,334
    Likes Received:
    2,613
    Best Answers:
    462
    Trophy Points:
    710
    Digital Goods:
    29
    #9
    digitalpoint, Nov 20, 2009 IP