F5F Stay Refreshed Power Users Networks Anti-dosing protection data center

Anti-dosing protection data center

Anti-dosing protection data center

N
NerdiYT
Junior Member
37
03-02-2023, 07:00 PM
#1
Hello, for securing your servers without IP blocking, consider using network-level protections like firewalls and intrusion detection systems.
N
NerdiYT
03-02-2023, 07:00 PM #1

Hello, for securing your servers without IP blocking, consider using network-level protections like firewalls and intrusion detection systems.

R
Razlorus
Posting Freak
976
03-09-2023, 04:40 PM
#2
Erm, you'll eventually want to block based on IP address, however, when you first implement an Intrusion Prevention System it is indeed good practice to train it on what normal traffic looks like before letting it detect & block attacks. DDoS protection options include both hardware and software-based solutions, both of which server their own purposes, so you'll definitely want to research available options based on the architecture & requirements of your data centre and/or clients. https://en.wikipedia.org/wiki/DDoS_mitigation https://www.fortinet.com/products/ips.html https://www.pcworld.com/article/144634/g...stems.html
R
Razlorus
03-09-2023, 04:40 PM #2

Erm, you'll eventually want to block based on IP address, however, when you first implement an Intrusion Prevention System it is indeed good practice to train it on what normal traffic looks like before letting it detect & block attacks. DDoS protection options include both hardware and software-based solutions, both of which server their own purposes, so you'll definitely want to research available options based on the architecture & requirements of your data centre and/or clients. https://en.wikipedia.org/wiki/DDoS_mitigation https://www.fortinet.com/products/ips.html https://www.pcworld.com/article/144634/g...stems.html

X
xoi_icefire
Member
54
03-20-2023, 07:27 AM
#3
You need to avoid certain identification techniques like MAC addresses or IPs. You can start with a temporary ban, then extend it to minutes, hours, days, months, or even indefinitely. This helps stop the server from repeatedly sending the same file to the same user. Many documents block all users, but browsers often prevent you for valid reasons.
X
xoi_icefire
03-20-2023, 07:27 AM #3

You need to avoid certain identification techniques like MAC addresses or IPs. You can start with a temporary ban, then extend it to minutes, hours, days, months, or even indefinitely. This helps stop the server from repeatedly sending the same file to the same user. Many documents block all users, but browsers often prevent you for valid reasons.

O
oOEmmaOo
Posting Freak
818
03-21-2023, 10:48 PM
#4
You should consult network experts regarding this matter and the ISPs you intend to connect with, to understand their capabilities and limitations. I can recommend further resources such as FastNetMon for custom detection and BGPFlowSpec for refined upstream rules to manage known good traffic. It would also be wise to steer clear of attempting mitigation or filtering until you have substantial bandwidth—200Gbit/s+ at a data center. Given your inquiry, it seems you may not have the necessary capacity to withstand even minor attacks.

In the event of an attack, you should follow your agreed-upon procedures outlined in your terms and conditions.
O
oOEmmaOo
03-21-2023, 10:48 PM #4

You should consult network experts regarding this matter and the ISPs you intend to connect with, to understand their capabilities and limitations. I can recommend further resources such as FastNetMon for custom detection and BGPFlowSpec for refined upstream rules to manage known good traffic. It would also be wise to steer clear of attempting mitigation or filtering until you have substantial bandwidth—200Gbit/s+ at a data center. Given your inquiry, it seems you may not have the necessary capacity to withstand even minor attacks.

In the event of an attack, you should follow your agreed-upon procedures outlined in your terms and conditions.

L
LochDown
Junior Member
41
03-31-2023, 01:56 AM
#5
Cloudflare stands out as a favored option.
L
LochDown
03-31-2023, 01:56 AM #5

Cloudflare stands out as a favored option.