Online Casinos - Casinomeister Logo Online Casinos - Casinomeister

Go Back   Casinomeister's Online Casino and Poker Forum > Webmaster's Corner > Domains and Server Information

Notices

Domains and Server Information Know of any decent (or lousy) servers? Post your experiences here. If you have a domain for sale, please post this is the "For Sale" forum.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 23rd November 2004, 03:39 PM
Casinomeister's Avatar
Mister Meister
 
Join Date: Jun 1998
Location: Here near my Bier, my dear.
Posts: 13,293
WTGs: 8
WTGd at 1 Time in 1 Post
Thanks: 1,266
Thanked 4,034 Times in 1,483 Posts
Blog Entries: 1
Reputation Points: 21024
Rep Power: 15
Casinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond reputeCasinomeister has a reputation beyond repute
DDoS Attacks

I think it would be useful to post any informatio nthat some of might have concerning DDoS attacks. Since this is something that is plaguing not only this industry, but the Internet as a whole, we all should be doing whatever we can to fight this:

One thing is to preach to everyone we know who has a computer, (your mom, co-workers, teenagers, everyone) to have a firewall installed on their computer. If a person is on a continuous Internet connection, a trojan can snag hold of the computer and turn it into a zombie. Zombie computers are the ones that are programmed to take a site down.

I've been in touch with me server guys asking if there are any precautions that one can take. Here is their answer:

To be open and honest, if the attackers are very skilled at DDoS attacks, there is not much anyone can do about it... The Internet by nature was designed to be anonymous, so there is no way to know that a source IP is from a real person or is spoofed/forged...

With that said, there are a multitude of different types of DDoS attacks and the countermeasure to the DDoS attack is pretty much different each time...

In some cases, the attack is coming from millions of random forged source IP addresses that go nowhere... In the case of TCP connections, syncookies will handle that attack... In non TCP packets, then rate limiting would be applied...

If the packets are TCP and coming from zombie attack systems that have valid source addresses, then it gets more a bit more complicated... However it also gets easier because the set of IP addresses we have to wheedle down is vastly reduced... From there you watch the essence of the packet flows heading to your site and start masking out the bad traffic through process of elimination...

The above is two techniques of many... DDoS attacks parallel in many respects to combating spam... The problem is somewhat the same, how to tell what is valid and what is not, even if the problems is on two separate planes of existence...

In conclusion, there are methods to fend off DDoS attacks, however if the attacker is really good at it - and determined - there is nothing that anyone can do to stop it... That is simply the reality of how the internet was designed and works... There are many different countermeasures against DDoS attacks, but there is rarely ever a one sized fits all... Packet flows need to be studied and intelligent heuristics applied to try and identify what is good or bad...

Even high dollar professional gear, there are only a small handful of companies in this DDoS problem space, and even they will admit there is no 'magic bullet'...

Wish I could just say 'DDoS Attacks, yeah - no problem - We've got you covered'... However I can't since that is not the reality of DDoS attacks... The ultimate solution to DDoS attacks is for *all* ISPs to perform egress filtering on their networks and not allow spoofed packets to emerge from their networks... Unfortunately, due to some people having access to legions (10,000+) of zombie machines than spoofed IPs no longer become an issue since the packets will be coming from real/live IP addresses... All this stuff just sorta makes ones head spin...
__________________
Beer is living proof that God loves us and wants us to be happy
~Ben Franklin

Useful links: ~ Accredited Casinos ~ I-Gaming Representatives ~ Evil Section ~ Pitch a Bitch ~ Affiliates Click Here ~ Webcast ~ Quit Gambling! ~ Donate Now!

Reply With Quote
  #2 (permalink)  
Old 12th December 2004, 07:18 PM
Registered User
 
Join Date: Dec 2004
Location: Costa Rica
Posts: 4
WTGs: 0
WTGd at 0 Times in 0 Posts
Thanks: 0
Thanked 0 Times in 0 Posts
Reputation Points: 10
Rep Power: 0
wolfie_Cr is on a distinguished road
There is plenty of info about DDoS on prolexic.com , this is a company used by egaming sites typically down here in CR where the internet pipes were completely saturated when this stuff started about 1 1/2 years ago.

They provide a "proxy" service and use propietary technology combined with massive internet pipes to do the filtering in the "big end of the pipe" and prevent the "smaller end" which is the ISP in Costa Rica from being swamped with bogus packets/requests. VERY expensive and like Casinomeister said, its basically a patch as no real solutions exist at this point.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On
Forum Jump


All times are GMT +2. The time now is 04:00 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0
© All Rights Reserved, 1998-2008


  Casinomeister is proud to present the following quality portals
Online Casinos | GoneGambling | Online Casino Reviews | Wizard of Odds | Games and Casino | Online Poker Rooms | BetOnCharity | Winneronline | Online Casinos| Online Slots | Online Casino Reviews

Legal Statements and Privacy Policy
Casinomeister.com does not intend for any of the information contained on this website to be used for illegal purposes. You must ensure you meet all age and other regulatory requirements before entering a casino or placing a wager. Online gambling is illegal in many jurisdictions and users should consult legal counsel regarding the legal status of online gambling and gaming in their jurisdictions. The information in this site is for news and entertainment purposes only. Casinomeister.com is an independent directory and information service not affiliated with any casino. Links to third party websites on Casinomeister.com are provided solely for informative/educational purposes. If you use these links, you leave this Website.

Inactive Reminders By Mished.co.uk