DDOS Protection

Discussion in 'Site & Server Administration' started by MzKh, Nov 22, 2009.

  1. #1
    How could I evade DDOS attacks on my site?

    Suggestions and tips required. :)
     
    MzKh, Nov 22, 2009 IP
  2. theapparatus

    theapparatus Peon

    Messages:
    2,925
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Honest answer: Delete it and get off the net.

    Probably not the answer you;re looking for though. How about we start off with some specifics as to what OS you;re running for your server and how much specific control you have over it.
     
    theapparatus, Nov 22, 2009 IP
  3. Melvinng

    Melvinng Peon

    Messages:
    850
    Likes Received:
    77
    Best Answers:
    0
    Trophy Points:
    0
    #3
    It really depends on your budget and the type of attack you are getting. We need more info???
     
    Melvinng, Nov 24, 2009 IP
  4. Archimonde

    Archimonde Peon

    Messages:
    72
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Archimonde, Nov 25, 2009 IP
  5. kbduvall

    kbduvall Peon

    Messages:
    71
    Likes Received:
    3
    Best Answers:
    4
    Trophy Points:
    0
    #5
    CSF (linux) provides some protection if the attack is coming from one, or a very small number of IPs but if they're using a botnet (most common method of attack) it will be useless as the attack will come from likely hundreds of IPs from all over the world. CSF protects by banning IPs when they connect too frequently. It's generally said that using CSF will cause more problems for your legit users as it's likely to ban users when they use connection intense protocols like FTP, HTTP, IMAP, etc.

    Since it won't protect against botnet attacks its generally discouraged to use CSF for that kind of protection.

    Your best bet would be a hardware firewall (OS independent) but those get expensive quick and you have to have some sort of access to the network topology or at least a tech at your datacenter wiling to install it for you.

    Otherwise, you're mostly out of luck. DOS is very hard to protect against cheaply.

    Once an attack starts though, if you can, you can suspend the account that is being targeted until the attack stops then unsuspend the account. Unfortunately that's about all you can do.
     
    kbduvall, Nov 27, 2009 IP
  6. webmaster1189

    webmaster1189 Well-Known Member

    Messages:
    460
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    110
    #6
    how about using a hardware firewall.contact your host for that
     
    webmaster1189, Nov 28, 2009 IP
  7. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Best option is using a hardware firewall.
     
    rootbinbash, Nov 28, 2009 IP
  8. slacker8

    slacker8 Peon

    Messages:
    176
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    hw firewall won't help if it's a *real* ddos.
    Best option is to checkout providers who offer ddos protection, like Staminus Gigenet or Sharktech.
     
    slacker8, Nov 29, 2009 IP