How And Which HW Device Do I Need For DDoSS Prevention?
Jan 10, 2007I have linux server and like to put somekind of DDOS prevention/protection... what kind of device do I need to purcahse to do this?
can anyone advise on this?
I have linux server and like to put somekind of DDOS prevention/protection... what kind of device do I need to purcahse to do this?
can anyone advise on this?
I have searched for prevention methods and explanations on what DoS's and DDoS's are capable of. I was hoping someone could shed some light on free alternatives that would help reduce these attacks or help to make me aware if one were to occur.
Linux Distro: CentOS 5.3
I am not running apache or any web related services on my machine.
I run a dedicated server for the sole purpose of hosting a few game servers. I have already contacted my provider and they offered a $599 /mo plan for prevention. This is unreasonable and I simply cannot afford it. I have been threatened with a DDoS because one of my administrators banned a player constantly creating drama, stress, and breaking rules.
I simply cannot afford a gigantic bandwidth bill and this scare tactic has made me a little weary. Is there anything I can do to reduce the damage?
I would like to know what are the best ways in preventing a UDP D/DoS Attack. DDoS-Deflate and most programs like that are just for TCP connections, and most of the time only for port 80. What is the best option out there for protection (linux wise) for UDP attacks. I was using shorewall before but it did not do so well so I just switched now to CSF [url] with WebMin and seems to be working ok. Even though thoes are both firewalls, they seem to have some protection against UDP Attacks. Please note this is a server that just hosts some game servers, no webhosting. What would be my best option here?
View 3 Replies View RelatedMy host has told me that my forum is coming under a DDOS attack.  Once was on Friday March 20th and again today (monday march 23).  Before those two, there are attacks almost every week, sometimes twice a week.
The host installed DoS-Deflate.  It started blocking legitimate traffic and had to be removed.
The operating system is Linux CentOS, the forum software is VBulletin.  The server is a VPS with 1 gig of memory.  
Besides DoS-Deflate, what other options are out there?
any experience with the DDoS prevention feature provided by SoftLayer?
View 6 Replies View RelatedToday my server was down cause it was overloaded and when i restart my server its running how to stop such problem in the future
View 10 Replies View Relatedi am seeing a lot of Local file inclusion (LFI) and mysql injection attacks quite often directed to php scripts.
what is the way to prevent them? would installing mod_security to apache work?
if anyone knows a script that is url rewrite mods that can fix this hotlink issue by having the link url change every 20 minute.
View 2 Replies View RelatedI have a VPS from hostforweb.com , and my vps every week under ddos attack and 80-150 connection login to apache...
how can i prevention from ddos attack?
one of my clients seems to be attracting unwanted attention, it seems as if bots or something along those lines are attempting to exploit my box, while they are unsuccessful it would seem. I was wdonering if there was a rule I could put in Mod_Security that would ban them for attempting to 
GET "/awstatsf/logger.php?action=log&type=Hybrid&host=hacked101&" 
I recently initiated "Hot Link Prevention" on one of my web sites on my Dedicated server (via CPanel). It woks well in re-directing hotlinked images to a small image that says "Unauthorized Hotlink Image." This of course prevents other web sites from leaching my bandwidth. However, I have had a number of people complain that when they visit my forum, they don't get my site's images, but instead see the Unauthorized Hotlink Image. The common thread seems to be the people with the problem are using Security Software. In one case, a guy is using Norton Confidential. Another guy is using some Security software provided by his ISP. I'm guessing that this security software is somehow messing with the Referer in tehir browser and confusing my server into thinking the images are being hotlinked from some other site. Short of turning off Hot Link Prevention, does anyone have any suggestions to tell the folks...are there settings in their Security Software for example that will prevent the problem when they visit my site?
View 4 Replies View Relatedip addr add 69.39.**.**/29 dev vmnet0
iam getting cant find the device vmnet0
how to add it
Has anyone here ran the CSF firewall on a bridged networking device?
View 1 Replies View RelatedI have SSL enabled site on IIS.I want to access it from my PocketPC(Win mobile).But when  I  try access it, I have been prompted to install a certificate.
Unlike when I try to any HTTPS site (Banking sites) I have never been prompted to install any certificate.
Why  am I being prompted with security message with "Yes,No,View certificate" options on it every time I try to access my own server(desktop) via my WIN mobile using active sync.
Unlike When I try to access banking site(https) I was never ever prompted a mesage like above.
How to have same functionality for my application also?
I have a Dell LTO-4 tape device, its not an autoloader, just a single drive.
When backing up using NTBackup, the backup to the first tape is sucessful, however, the backup wont fit on one tape, so it prompts me to tell me the media is full.
I insert new media, but NTBackup doesn't notice its there, so i go to Removable storage, click libaries, right click the tape drive, and click inventory.
This makes NTBackup detect the tape, and asks me if i want to use it. I click yes, but then i get an error message come up saying it was unable to mount the media, invalid command, and the following gets logged to the report:
Code:
Cannot locate the specified media or backup device. This backup operation will terminate.
----------------------
Cannot locate the specified media or backup device. This backup operation will terminate.
----------------------
Cannot locate the specified media or backup device. This backup operation will terminate.
----------------------
I have read many microsoft articles that explain tape drives having problem with automated backups because the user inserts a new tape, but ntbackup isn't aware of it. But that seems to be related only to scheduled unattended backups.
In this case its when the first tape is full and it prompts me for the second tape.
Is there a program to find out the MAC address of a particular IP address?
Have been having some problems lately with some of my IPs and clients using unauthorised IP addresses which the ISP is hopping on me about it.
I have tried things like
In LINUX
nmblookup
nslookup
In DOS
nbstat
but can't get the MAC of the particular IP I am looking for...
I just found the following KVM over IP device with 16 ports:
[url]
You can get it for 747 € ( plus VAT ) and it comes with 2 CPU cables. Each additional cable costs only 5.80 €. For 828 € you can manage 16 servers, 52 € per server. 
[root@bruno ~]# df -h
Filesystem            Size  Used Avail Use% Mounted on
/dev/hda6             996M  312M  633M  33% /
/dev/sda1             226G  188M  214G   1% /backup
/dev/hda1              99M   16M   79M  17% /boot
tmpfs                 1.6G     0  1.6G   0% /dev/shm
/dev/hda8             201G  188M  191G   1% /home
/dev/hda7             996M   34M  911M   4% /tmp
/dev/hda2             9.5G  824M  8.2G   9% /usr
/dev/hda3             9.5G  375M  8.7G   5% /var
How to put more space in / var ?
I want to take advantage of the / home and put in / var
programatic/scriptable way to find out which disk a file is on. For example, if I look at the output of:  stat /root/.bashrc  I see:  
File: `/root/.bashrc'
Size: 1298            Blocks: 16         IO Block: 4096   regular file
Device: fd00h/64768d    Inode: 13991942    Links: 1
Access: (0644/-rw-r--r--)  Uid: (    0/    root)   Gid: (    0/    root)
Access: 2008-05-18 09:19:14.000000000 -0400
Modify: 2007-12-18 09:19:54.000000000 -0500
Change: 2007-12-18 09:19:54.000000000 -0500
So I can see this is on device 64768, but how do I get from there to  knowing that 64768 is really /dev/sda1, where in this example, I know the file actually is?  
Overall, I want to resolve from the filename which device in the output of iostat contains that file - I don't necessarily have to go through stat, but it looks like a promising starting point.
the device which i transfer the full backups to through ( wget ) is full 100 % 
Disk /dev/sda2 (/) ............ 100 %
 
i want to know if there is some safe way to make the space of the device larger?
as  the cpanel is suspended for that reason 
and how to know the files in that device and delete what i don't want 
centos 5.2
cpanel 11.23
We have a customer requirement to enable Direct Push email on our Outlook Web Access servers to a number of mobile devices the customer will be supplied from Vodafone - running Windows Mobile 5
 
Therefore we need to create a public HTTPS address to allow access to the OWA/OMA part. 
We do NOT (at this stage) want to allow general access to OWA over HTTPS (we have an eGap solution with RSA for this) so we need to be able to lock down access to the OWA server only to specific devices. One way would be to use Firewall Rules at the Outer DMZ and lock down by the IP ranges of the phone but thats prohibitive to other devices and will fail when the phones change IP (i.e. international roaming)
 
Therefore Im wondering if we can use self signed SSL certs where there is no trusted CA provider (if there was all browsers would simply be prompted to trust  the source and then get access). If we use our own self signed certs and have them installed on the client devices would this work? What would be the downsides (i.e. less cryptogrpahy without the CA part?)
i have a Centos server that install Xen and hypervm in it.
i have some vps in this server.
i restart server and after that i get this eror for run vps :
Could Not Start Vps, Reason: Error: Device 0 (vif) could not be connected. Could not find bridge, and none was specified:
how can i solved this problem ?
my server is : Centos5.2
what network device would suit our needs (and whether there is something like what we need).
The device should meet following criteria:
-it should appear as one device only: a L2 switch is not an option as the device has to announce only one MAC address on the uplink port
-plug&play: a gigabit L3 switch is not an option because we would have to change the default gateway of the already configured servers to the L3 switch's IP
-gigabit ports
Is there any reliable device that could be used for this purpose?
I will be running Plesk.
I only need 1 user, Administrator with full Remote Desktop Connection access.
But I need to be able to serve websites using Plesk.
I was just upgrading my system packages using up2date, and got this error...:
Code:
Testing package set / solving RPM inter-dependencies...
########################################
libpng-1.2.2-27.i386.rpm:   ########################## Done.
libpng-devel-1.2.2-27.i386. ########################## Done.
libpng10-1.0.13-17.i386.rpm ########################## Done.
libpng10-devel-1.0.13-17.i3 ########################## Done.
rh-postgresql-7.3.19-1.i386 ########################## Done.
rh-postgresql-devel-7.3.19- ########################## Done.
rh-postgresql-libs-7.3.19-1 ########################## Done.
rh-postgresql-python-7.3.19 ########################## Done.
rh-postgresql-server-7.3.19 ########################## Done.
samba-3.0.9-1.3E.13.2.i386. There was some sort of I/O error: [Errno 28] No space left on device
But I do have space on all my partitions...
Also installing only the samba package it fails:
Code:
Testing package set / solving RPM inter-dependencies...
########################################
samba-3.0.9-1.3E.13.2.i386. There was some sort of I/O error: [Errno 28] No space left on device
 
im using RHEL 3 + cPanel.
I run some tests with an Apache 2.4.10 running on W2k3 Server to see if Videos are playing well. The site is protected with .htacess/.htpasswd for now. I use jwplayer as player. The videos run fine on FF and IE, but as soon as I want to play them on an IOS 8 device (Iphone, Ipad), it doesn't work anymore. The message I get is "File cannot be played". The odd part is - when I remove .htaccess/.htpasswd, it works immediately. IOS devices, or is there something specific to be set to make this work? I logged in to the site with user and password, which always worked flawlessly. I assume it's not an Apache problem, since it runs fine on FF, but maybe someone here is aware of such a bug or something.
View 3 Replies View Relatedi have a problem when i wget anyfile after i install 
APF+BFD into my server
my server is VPS ..
my VPS details is
---------------------
Server Name: bOx 
User Name: b0x 
Operating System: CentOS 5 
RAM: 512 MB Guaranteed 2 GB BurstedTotal 
Disk Space: 10 GB 
Bandwidth Quota: 500 GB 
Quota Used: 0 GB 
Control Panel Type: cPanel (license enabled) 
Server IP Address: 72.152.456.37
---------------------
now my VPS when i restart my APF its show me this 
eth0: error fetching interface information: Device not found
eth0: error fetching interface information: Device not found
and my SSH Froze in this ..
Warning: Unknown(): write failed: No space left on device (28) in Unknown on line 0
Warning: Unknown(): Failed to write session data (files). Please verify that the current setting of session.save_path is correct (/tmp) in Unknown on line 0
I am getting this error on my site. I have googled this error and it is telling me it relates to a /temp/ folder of some form. I am currently on a hosting plan (not a dedicated server). Is there ANY way I can access to fix this problem either from my control panel or by code?
kernel: EXT3-fs error (device loop0): ext3_lookup: unlinked inode 12286 in dir #2
kernel: EXT3-fs error (device loop0): ext3_journal_start_sb: Detected aborted journal
EXT3-fs error (device loop0): ext3_lookup: unlinked inode 12286 in dir #2