全 10 件のコメント

[–]gnuworldorder 3 ポイント4 ポイント  (3子コメント)

how big are we talking? if the throughput isnt that high can you move to another host? also what layer is the ddos? if its just a layer 3/4 if we can pool 2-300$ you could get a cloudflare or akamai assuming they will host us.

[–]KropotkinZombie[S] 2 ポイント3 ポイント  (1子コメント)

Looks like they're smart enough to target a specific script that leads to host overages without needing to go over the daily allotted bandwidth. I don't think it's a traditional DDoS attack, but it's being used in lieu of a better term.

If the raddit admins have blocked entire countries IP ranges like it says, then fingers crossed that should do the trick.

[–]gnuworldorder 2 ポイント3 ポイント  (0子コメント)

Sounds like you are out of luck then. Getting a bigger pipe won't help you need more server and the attackers scale much cheaper than you. You could also get a WAF but they are super expensive of just take the script down.

[–]sanarchonewsbot 1 ポイント2 ポイント  (6子コメント)

I've blocked 8 countries' IP ranges at this point from the .htaccess file, it seems to be working.

[–]DoormouseJessup 1 ポイント2 ポイント  (5子コメント)

What are the countries? I saw China and Russia.

[–]sanarchonewsbot 1 ポイント2 ポイント  (4子コメント)

Plus Nigeria, Taiwan, Korea, Hong Kong, and select IP ranges from Japan, Ukraine, Belarus, Bulgaria, Czech Republic, Romania, Latvia, Estonia, Kazakstan, Moldova, Poland, Serbia, Slovakia, Slovenia, Thailand, Vietnam, Singapore, Philippines and Malaysia known to host botnets and other malicious activity.

[–]gnuworldorder 1 ポイント2 ポイント  (3子コメント)

There exists a list of IP ranges with bad reputations. I'd look for that and just block them all. I do that with my pfsense box. I'm just some random dude with a residential connection and get 100s of blocks a day with this alone

[–]sanarchonewsbot 0 ポイント1 ポイント  (2子コメント)

[–]gnuworldorder 1 ポイント2 ポイント  (1子コメント)

I'd look up how pfblockerng does it. It has a premade list and it is dynamically updated.

[–]sanarchonewsbot 0 ポイント1 ポイント  (0子コメント)

Will do, thanks for the lead.