Anti Ddos Or Firewall Hardware

Apr 10, 2009

I am trying to purchase either a anti-ddos or firewall machine. My main objective is to prevent from ddos attack.

Do i purchase a anti-ddos hardware (please recommend), or firewall hardware (please recommend)?

anti-ddos and firewall is the same right? is about ip analyse and filter right?

After using the ddoss/firewall , i may also want to subscribe to those third party doss prevention which has big bandwidth, if i have a good hardware anti-ddos/firewall already, do i still need to have subscribe to these services?

View 12 Replies


ADVERTISEMENT

Anti-DDOS

Jun 12, 2007

One of my potential client is getting DDOS occassionally. According to the DCs-PCCW and Singtel, the attacks come from China mainly and the DDOS used up all the available bandwidth.

I have asked many DC in Hong Kong. Most of them said they will only null route their IPs and wait the DDOS gone. It seems that none of the DC in HK offer any sort of Anti-DDOS solution.

My client don't want their site completely offline every time they got attacked. So, could any professional suggest what we can do?

What I am thinking of is:
1. Getting 2 connection from different bandwidth providers
2. Using Geo DNS: [url]

Then, I can separate all China users by forcing them to use 1 connection. Will this work? Is there any potential problem here?

Also, I am also thinking of using BGP. Will that make us partially visible as well?

View 0 Replies View Related

Anti DDOS Service

Mar 8, 2008

Can you recommend any anti DDOS provider that can help My servers are being attacked by low bandwidth, botnet attack.

View 14 Replies View Related

Run Dos Deflate :: Anti DDOS

Jul 9, 2009

it seems people tell Dos Deflate is the best basic antiddos script and tons of webhosts use it.

I think its ratter old and it doesnt work for anything these days. Why do hosts still run it? And why isnt there a better alternative?

I used Deflate some years ago and I got problems. And tried then after some years again and nothing changed, the same basic old script which counts connections and ban IPs.

The think with Deflate is that if you have a high limit, lets say ban with 150 connections per IPs, its absolutely worthless for attacks, since you are letting already 150 connections per IP.

And if you lower it at least me got with tons of problems banning real visitors. Even over 150 I had complaints about real visitors on a server telling the server blocks him. Dont ask me how someone has 150 connections to a servers but I got complaints from multiples people over the world the 1 month i had it running over a 2 years ago.

I also see a really big problem with it. Allot of ISP share IPs between users. So its really possible you get 200 connections from the same IP and they are different users. Banning an IP based on the connections you can probably shutdown a full IPS and their visitors. I wish there was a better solution but using a high value like 300 or 500 doesnt make sense in a Dos attack. And if you use a low value you start to get into problems.

We agree it will not work with distributed attacks but I dont think it can even work with single attacks since besides connection count it doesnt seem to be any more analisys behaviour.

The way I would make a script like that. Is to check all traffic and IPS all the time. And mark IPs that always access a server ass good ones. The newer the IP the more suspicious. On a attack this way real visitors would still pass but attackers will not as they are new ips. You can also match then the number of times its connecting, how long, etc.

View 2 Replies View Related

Best Dedicated Hosting For Anti DDOS

Nov 3, 2008

Best Dedicated Hosting for Anti DDOS - Please Help!

Our website has been coming under attack for the last 6 months. Usually every weekend for 3 days. We are currently hosting at ThePlanet and they do nothing more than turn on Cysco Guard which blocks the bad traffic and the good traffic as well. They don't do anything on their level to block the ddos attack.

I contacted the guys at ProxyShield and they want $1244 a month to route the traffic for us. That's a bit high for someone with a small business not making more than $500 a week online. EDIT: Just got back in touch with them and the $1244 is only for 20mb if you need 100mb it's $2400! that's just insane for a small business.

My question to you guys is who can host us or what services can I use to get rid of these ddos attacks? The Planet has horrible support and I'm not sure where to go or look. Unless we sit at the computer and block every inbound attack all day we simply can't beat it.

Any suggestions?? Currently they are sending SYN_FLOODs in the amount of 93MBit/s and our hosting only includes 100MBit/s, so you can guess how difficult it is to maintain reach ability.

View 10 Replies View Related

AV, Anti-RootKit, And Firewall For Dedi

Nov 15, 2008

trying to secure my new server that will be opening for shared hosting.

So far I've found:

CHKRootKit, RKHunter, and ClamAV

As for Firewall, I've setup CSF but my question is, what is a good setting for blocking SYN Floods without blocking clients who might be browsing their site and, using DA, and FTP.

In the past I've used:

iptables -A INPUT -p tcp --syn -m limit --limit 1/s --limit-burst 3 -j DROP
iptables -A INPUT -p tcp --syn -m limit --limit 3/s --limit-burst 5 -j DROP
and took down some pretty big attacks, but it was very touchy.

View 0 Replies View Related

List Of IP Addresses That Is Block By APF And Anti Ddos?

Jan 29, 2008

how can i know the list of IP that is block by APF and anti-dos?

View 2 Replies View Related

Dedicated Server With Anti Ddos Feature = Reliable Web Host

Jun 3, 2008

i would like to have reliable web host who can provide

1- anti ddos

2- fully managed dedicated server

3- server location - traffic mostly come from asia regions for 60% and usa for 25% - pls suggest the best location

4- bandwidth req 2500 gb

5- hard space - 1000 gb

6- daily backup req

7 - cost ?

View 11 Replies View Related

Antivirus, Anti Spyware, Firewall For Windows 2003 Server

Apr 11, 2008

I will be getting my first dedicated Windows 2003 Server next week. I was just wondering what antivirus, anti spyware and firewall to use.

I will be using this server to start of a small webhost business here so I need the server to be reliable.

View 6 Replies View Related

Plesk 11.x / Linux :: Anti-virus And Anti-spam Enabled By Default On Mailbox Creation?

May 27, 2013

It is possible to have anti-virus and anti-spam enabled by default when we go to "CREATE E-MAIL ADRESS" -> "SPAM FILTER" / "ANTI-VIRUS" is always disabled.

View 13 Replies View Related

DDOS :: Firewall Solution

Feb 17, 2007

we have about 100 servers in colocation with a 200mbps connecetion, every server have install a software firewall on, this night we got a DDoS (4 hours down) and naturally we was unable to find the source or destination of attack so now we have think to add a firewall solution on the connection, can u give me a good firewall solution for this structure? we have think on a cisco pix 525 but seem to be expensive 10.000$

View 4 Replies View Related

Best Firewall For DDoS Attacks

Mar 23, 2009

My sites are getting heavy DDoS attacks.

What's the best firewall? I'm currently using ACH software firewall but the attacks are getting so bad my site's are going down (apache is shutting down/locking) and sometimes my server even crashes.

Anyone recommend a better software firewall or a really cheap but good hardware firewall?

Could my host just use a router or something as the firewall or would that not do? I'm looking for something really affordable as a solution.

View 14 Replies View Related

Nix Firewall- DDoS Protection

Mar 7, 2008

We have an older dual xeon box that we are wanting to use as the edge firewall to our network.

We are currently considering FreeBSD w/ PFSense or Linux w/ IPCop, but from what I see, I don't see that they do too much against DoS.

I saw a thread before on this topic but it didn't really give me any new information.

I would like to hear from users who use a *nix firewall, please let me know which you use, what it has helped you with since you started using it instead of a software firewall on your dedi servers, and have you been successful in filtering out or mitigating DDoS attacks?

We only are planning on pushing ~200mbit through this so we feel a dual xeon should be plenty.

View 3 Replies View Related

DDOS :: How To Allow My Unique Ip On My Plesk Firewall Rules?

Sep 26, 2007

Im actually under ddos attack.

I'll be life long grateful is some one can tell me how to allow only my IP address to access the whole vps server, to add ddos protection on it in the end.

I already try, but i'm a dummy already on linux interface.

View 3 Replies View Related

Apf Anti-dos Acting As Anti-user

Feb 7, 2007

Seems like I'm having considerable problems with APF's antidos feature. I keep getting legit users banned from my site, and don't know how to stop it (other than disabling antidos altogether, but I guess there should be another way).

I've already set:
TRIG="100"
SF_TRIG="100"

...in the antidos configuration file but I'm still seeing more and more legit IPs getting added to ad.rules. I've read that raising or lowering LN="100" is the other tweak I should try, but there simply is no such value defined in my conf.antidos file.

Another thing I noticed that, although I only got two notification mails telling me about "attackers" blocked by antidos, there are roughly 40 entries in ad.rules. As a matter of fact, I don't understand what antidos is doing there in the first place. Seems like iptables doesn't log to var/log/messages anyway, at least not on my machine - so where is antidos getting those ips from?

View 2 Replies View Related

Being Ddos'd By A U.K Ddos Protection Company - Dragonara.net

Nov 7, 2008

it's come under my attention that dragonara.net has been ddosing me today since morning from the ip:
194.8.75.229

What's so ironic about it is that the ip is from a UK DDOS protection site so i'm expecting some email with their services in the next hour or so. Stay clear of them they are fakes and e-terrorists.

View 14 Replies View Related

Do You Recommend A Software Firewall When Behind A Hardware Firewall

Dec 17, 2008

Do you recommend a software firewall when behind a hardware firewall?

All of our servers are behind Cisco ASA 5505 firewalls which we rent from Liquidweb. All are being managed correctly and setup to there optimal levels. With hardware firewalls firmly in place, do you still recommend a software firewall such as APF or IPTables (we're talking linux); in our opinion we see it as an extra administration overhead. If this is however untrue, we will change out thinking.

View 3 Replies View Related

Anti-Virus Recommendations

Apr 13, 2009

We have 2 servers, one running Windows 2003 Enterprise that hosts a ColdFusion app, and one running Windows 2003 Standard that hosts our SQL database that is used by the CF app. Nothing else runs on them.

Does anyone have any suggestions for anti-virus products that we could use on these? I don't want one of those elaborate and expensive "suite" programs. I just need to protect the boxes.

I use Kaspersky on our individual machines, and I really don't care much for Norton anymore.

View 5 Replies View Related

What Anti-Fraud Measures Do You Use

Sep 30, 2009

Over the past number of years there has been an obvious increase in credit card fraud and identity theft.

Our policies have always tried to stay a step ahead but it seems no matter what is done the occasional fraudster manages to squeeze through, costing us a lot of money. At one some point in early 2009, it got as bad as 60% of the orders we received. It ended up eating a LOT of our time just to go through each order and verify them as best we could.

What methods do you use to fight fraud?

I'll start with some of the things we do.

- Require CVV code on the credit card
- We call the customer's telephone number and verify with them. - Verify the telephone number matches the region of the address they provide
- Require the CC issuing Bank's name and number
- We often require the customer to fax a signed credit card authorization form
- GeoIP matches location of the address in the order

Obviously the big challenge is proving that the person placing the order is the actual owner of the card. I've received the correct CVV, spoken with the customer on the phone number, had the phone number match the region... non-US so I wasn't able to verify their telephone details with the issuing bank. Had the GeoIP match and still found out it was fraud.

On a side note: Am I the only one that feels banks and those issuing credit cards need to take more responsibility for a system that's clearly broken? Even after going through the process above, it can still be fraud with a chargeback issued. In those cases, the company loses the money they made, pay a fee to the payment provider, lost time for Sales Reps and Tech Reps, and of course they lose money on hardware, electricity and bandwidth.

View 14 Replies View Related

Anti Proxy Scripts

Feb 15, 2008

Is there any anti proxy script which can detect any proxy sites on my server and kill it?

View 4 Replies View Related

Anti-spam Solution

Jun 21, 2008

I am running Win2003 server with Plesk 8.3. Antivirus running is F-Prot. Me and my clients have been getting a lot of spam emails and I am looking for suggestions on how to stop them. Plesk seems to provide some options for checking blacklisted spam servers but I was not too satisfied with the result. Maybe I was not looking up the right urls?

So, any suggestions on blocking the spam would be welcome. I am ready to pay for it too...but I am on a very tight budget. A free solution would be the best for me at the moment.

I also used SpamAssasin for a time being but it did not work out to any of my client's satisfaction even after a month's "training" of SpamAssasin.

View 8 Replies View Related

ASSP Anti-spam

Jun 14, 2008

I am interested in ASSP as a anti-spam tool and have heard good things, but I have 1 question I can't seem to find an answer too.

With ASSP is there a way to screen image spam like you can with FuzzyOCR? With ASSP do you even need to scan images at all? Because it waits for the sending server to respond for authentication?

I was running MailScanner / SpamAssasin / FuzzyOCR combo with a couple of chron jobs (to sweep fake bounce email out of the mail que for example) with very effective results, but it took forever to tweak all three to reduce server load. MailScanner was breaking webmail randomly so I have it disabled currently so I get a lot more spam.

View 0 Replies View Related

Server Anti Spam

Oct 4, 2007

We recently had a problem with a mail spammer. He sent over 90,000 emails and had 20,000 in the queue. Is there anyway to possibly stop this as it was really lagging the server bad. So bad the softlayer took it offline for a while...

View 4 Replies View Related

Anti-spam Appliances

Jul 22, 2007

where i can buy some cheap spam protection appliance. Right now, we are buying from mailfoundry, but it is a little bit expensive. I send an email to can spam, but i was quoted 18 K anually, to protect 25K emails. Anyone, have a way to buy some cheap anti-spam appliances.

View 14 Replies View Related

ClamAV :: Where Is The Report For Anti Virus?

Mar 2, 2007

Is this just for mail antivirus? where do I see the report of the anti virus?

View 2 Replies View Related

Anti Brute Force Protection

Apr 30, 2009

I have some windows 2k3 and 2k8 win servers and now i must to protect..

I need best free/commercial solution for firewall and anti brute force protection.

View 9 Replies View Related

Anti Spam Blocker Tool

Jul 25, 2009

I thought I should share this among all.

You will find many Anti spam blocker tools available in market. I recently come to know about[url]
. It’s an excellent tool to encrypt your email account if you use to display it on your website.

Generally, spammers uses robots (some kind of crawler) to get email accounts from websites. Once they get it they start selling it to other spammers and will start sending spoofing emails.

This tool will help you to encrypt your email address and stop spam coming from your website

View 0 Replies View Related

Vm Based Anti Spam Appliance

Apr 24, 2009

i have a ironport and its coming close to my renew, frankly for my 50 and less users its expensive and i end up with a so so of a server.

my goal would be to use a vm based one for power "green" and backups/migration needs.

im runing scalix with clamav/spamass

View 4 Replies View Related

Anti-Fraud System Of Vpsland.com

Sep 21, 2008

When I order, I have input all correct info.I always get these warning:
"Rejected by the Anti-Fraud System. Please contact Technical Support Team."

these guys spent a lot on adwords, but when i click on the AD, i have no way to order!

View 6 Replies View Related

Anti-lecch Apache Module

Jan 19, 2008

i have a dedicated server that i use for stream flv files. In this server i have apache.

Do you know any apache solution for prevent streaming of flv files to others domain name ? I want to stop leeching and permit stream of files only for my domain name. The htaccess solution in my case don't works...

View 3 Replies View Related

A List & Anti-phishing Stuff

Dec 17, 2007

I don't know about security on servers much, and we're setting up our new server. I have the techs doing the install stuff, but I would love to know what to install security wise. My current list:

Firewall - good free one?
Antivirus - good free one?

rootkit, some way of stopping it (anti-rootkit?)

Also, is there some sort of script which searches all cPanel accounts/files for phishing sites or spam sites etc? I swear I've seen one before, in firewall form?

Oh the server setup is going to be:

php5-CGI, fCGI, mySQL 5, apache 2.2.x, centOS, ruby on rails, django, ioncube, other php libraries, mod_rewrite, I think thats everything. (cPanel).

View 4 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved