How can I protect my Site against DDoS ?

Discussion in 'Site & Server Administration' started by error666, Feb 28, 2010.

  1. #1
    Hey,
    I know that there are different kinds of DDoS (Syn, HTTP etc.), is there anyway to protect his Site from DDoS if I have a Webspace (no Vserver, Rootserver). Is there maybe any Script or sth like that ? And does a htaccess helps against DDoS ?
     
    error666, Feb 28, 2010 IP
  2. FavouritesBlog

    FavouritesBlog Peon

    Messages:
    846
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Depends on the type of attack, if you knew about DDoS you would know that there is different techniques to handling different types of dDoS
     
    FavouritesBlog, Feb 28, 2010 IP
  3. olddocks

    olddocks Notable Member

    Messages:
    3,275
    Likes Received:
    165
    Best Answers:
    0
    Trophy Points:
    215
    #3
    even there are firewalls which could block dos. checkout apf and configserver.
    If you want maximum dos protection, you have to go for harware.
     
    olddocks, Mar 1, 2010 IP
  4. Bohra

    Bohra Prominent Member

    Messages:
    12,573
    Likes Received:
    537
    Best Answers:
    0
    Trophy Points:
    310
    #4
    if u have ur own server i would recommend you install ddos deflate
     
    Bohra, Mar 1, 2010 IP
  5. RHS-Chris

    RHS-Chris Well-Known Member

    Messages:
    1,007
    Likes Received:
    35
    Best Answers:
    10
    Trophy Points:
    150
    #5
    Software protection is only so good. A full DDos attack requires hardware. If you think about it, if the attackers are allowed to get to the server itself, then the server loads will rise, even if they are banned IP's, as the server still needs to be able to connect to determine the IP address. There are some great suggestions above for software protection.
     
    RHS-Chris, Mar 1, 2010 IP
  6. securityscott

    securityscott Peon

    Messages:
    1
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #6
    You could also go with a pay as you go service, depending on the size of the botnet this might be the best way.

    Solutions such as those provided by ddos protection companys like dosarrest can protect your server remotely.

    They have various features you can take advantage of as well.

    If you have any idea of the size of the attack (if not talk to your ISP) you might have a better idea of what type of solution best fits your needs.


    DDOS attacks can be never ending if someone really wants to cause harm, and most of these botnet's are rented and as such someone could potentially just rent a bigger and better botnet.

    Security Professionals have their hands full trying new defensive techniques to match changes in botnet behavior.

    Software on your webserver may only help defend you from smaller attacks. otherwise an attack large enough will just consume your entire bandwidth to your server, and your ISP will probobly end up null routing your IP address.


    Good Luck with the battle.
     
    securityscott, Mar 1, 2010 IP
  7. SkullTraill

    SkullTraill Well-Known Member

    Messages:
    270
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    125
    Digital Goods:
    1
    #7
    Use a good host with lots of bandwidth, and ban IPs with too many connections.
     
    SkullTraill, Mar 5, 2010 IP
  8. ammyy

    ammyy Peon

    Messages:
    11
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Blocking DDoS attacks works to a point depending on server config/bandwidth and more. consider the following resource as a very helpful guide.

    http://r00tsecurity.org/forums/index.php?showtopic=19607
     
    ammyy, Mar 7, 2010 IP
  9. raffo77

    raffo77 Active Member

    Messages:
    234
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    51
    #9
    Use mod_qos to prevent DoS, it work.
    I can configure and make an attack for testing.

    PM me
     
    raffo77, Mar 8, 2010 IP
  10. FortressDewey

    FortressDewey Peon

    Messages:
    45
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #10
    Go with a host that included DDOS, you will need a hardware application to mitigate it.
     
    FortressDewey, Mar 11, 2010 IP
  11. VinCme

    VinCme Well-Known Member

    Messages:
    325
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    125
    #11
    for a small size of attack, software based firewall with a proper server configuration will be enough. But with a large-scale attack, you will need a hardware based firewall, or even a spare server and huge bandwidth allocation to mitigate the attack. For this kind of attack, you should seek for a company who specialized in dDoS mitigation service, like blockdos or ddoswiz, just google them.
     
    VinCme, Mar 13, 2010 IP
  12. Webzcas

    Webzcas Peon

    Messages:
    14
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    0
    #12
    If the DDoS is large enough, then the firewall will not be able to cope and will in all intents and purposes collapse. Dosarrest are a very good service and mean you don't need to change your hosts.
     
    Webzcas, Mar 21, 2010 IP