Pomoc przy konfigurowaniu firewalla
: 07 grudnia 2015, 18:27
Witam,
jako, iż jestem lajkiem w tej kwestii to potrzebuje pomocy z stworzeniem wytrzymałych rekordów przed atakami typu DoS/DDoS
Serwer posiadam w OVH filtrowanie adresów stałe, aktualne regułki:
Dodam, że na serwerze mam strone, na którą nawet podczas ataków będzie można wejść jak i na serwer teamspeak.
Jeżeli to coś pomoże to wydaje mi się, że niektóre z tych pakietów z tcpdump wysyłają flooda (dodam, że ich się pojawia bardzo dużo na sec. zwłaszcza tych na porcie: 27960):
Pozdrawiam
jako, iż jestem lajkiem w tej kwestii to potrzebuje pomocy z stworzeniem wytrzymałych rekordów przed atakami typu DoS/DDoS
Serwer posiadam w OVH filtrowanie adresów stałe, aktualne regułki:
Dodam, że na serwerze mam strone, na którą nawet podczas ataków będzie można wejść jak i na serwer teamspeak.
Jeżeli to coś pomoże to wydaje mi się, że niektóre z tych pakietów z tcpdump wysyłają flooda (dodam, że ich się pojawia bardzo dużo na sec. zwłaszcza tych na porcie: 27960):
Kod: Zaznacz cały
18:36:57.012069 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 104418:36:57.012084 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012139 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012175 IP 80.72.37.6.27960 > vps222031.ovh.net.9987: UDP, length 617
18:36:57.012225 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012287 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012342 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.012442 IP 80.72.45.126.27960 > vps222031.ovh.net.9987: UDP, length 1083
18:36:57.012461 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012504 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012546 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012596 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012667 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.012720 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.012840 IP M.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 1440
18:36:57.012903 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.012997 IP 80.72.45.126.27960 > vps222031.ovh.net.9987: UDP, length 1083
18:36:57.013105 IP s2.zabijaka.pl.27962 > vps222031.ovh.net.9987: UDP, length 1361
18:36:57.013162 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013260 IP s4.zabijaka.pl.27960 > vps222031.ovh.net.9987: UDP, length 1017
18:36:57.013274 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013371 IP s2.zabijaka.pl.27962 > vps222031.ovh.net.9987: UDP, length 1361
18:36:57.013404 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013445 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013535 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.013565 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013617 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013695 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013788 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.013824 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.013870 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013898 IP c98-150.icpnet.pl.28983 > vps222031.ovh.net.9987: UDP, length 509
18:36:57.013949 IP 80.72.37.6.27960 > vps222031.ovh.net.9987: UDP, length 617
18:36:57.014050 IP 80.72.45.126.27960 > vps222031.ovh.net.9987: UDP, length 1083
18:36:57.014123 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.014198 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.014295 IP s4.zabijaka.pl.27960 > vps222031.ovh.net.9987: UDP, length 1017
18:36:57.014371 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.014482 IP M.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 1440
18:36:57.014516 IP 80.72.37.6.27960 > vps222031.ovh.net.9987: UDP, length 617
18:36:57.014631 IP s2.zabijaka.pl.27962 > vps222031.ovh.net.9987: UDP, length 1361
18:36:57.014749 IP M.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 1440
18:36:57.014798 IP s12.zabijaka.pl.28910 > vps222031.ovh.net.9987: UDP, length 670
18:36:57.014898 IP 80.72.45.126.27960 > vps222031.ovh.net.9987: UDP, length 1083
18:36:57.014967 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.015045 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.015133 IP 80.72.45.126.27960 > vps222031.ovh.net.9987: UDP, length 1083
18:36:57.015213 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.015285 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.015395 IP M.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 1440
18:36:57.015490 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.015564 IP V.1shot1kill.pl.27960 > vps222031.ovh.net.9987: UDP, length 949
18:36:57.015620 IP s12.zabijaka.pl.28910 > vps222031.ovh.net.9987: UDP, length 670
18:36:57.015658 IP s12.zabijaka.pl.28910 > vps222031.ovh.net.9987: UDP, length 670
18:36:57.015710 IP s12.zabijaka.pl.28910 > vps222031.ovh.net.9987: UDP, length 670
18:36:57.015825 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.015882 IP s4.zabijaka.pl.27960 > vps222031.ovh.net.9987: UDP, length 1017
18:36:57.015996 IP hosted-by.slaskdatacenter.pl.27960 > vps222031.ovh.net.9987: UDP, length 1275
18:36:57.016076 IP 79.133.192.44.27969 > vps222031.ovh.net.9987: UDP, length 1044
18:36:57.016115 IP s12.zabijaka.pl.28910 > vps222031.ovh.net.9987: UDP, length 670
18:36:57.016237 IP hosted-by.slaskdatacenter.pl.27960 > vps222031.ovh.net.9987: UDP, length 1275
18:36:57.016264 IP 80.72.37.6.27960 > vps222031.ovh.net.9987: UDP, length 617