Portal Home > Knowledgebase > Articles Database > Syn attack from 1024 ips


Syn attack from 1024 ips




Posted by suvro, 05-13-2012, 04:53 PM
currently i am facing syn attack from 1024 ips . heres ip list http://pastebin.com/77E6hKFG how i can stop this attack .

Posted by psmith6267, 05-13-2012, 05:10 PM
It's quite tricky to stop this sort of attack - it's not generally possible to block the sources of the attacks as these are too numerous. Normally the only options are to null route your IP for a few hours so the traffic doesn't affect the other IPs on your server, or your provider's infrastructure, or count towards your bandwidth limit if this is an issue!

Posted by ZKuJoe, 05-13-2012, 07:19 PM
Filter the packets. Either by building your own proxy to handle the traffic (I've been told nginx does a great job of this) or purchasing a DDoS mitigation service.

Posted by Mondo90, 05-13-2012, 07:31 PM
How you detect that exactly these 1024 ips attack ? If you are sure maybe I have solution to block this ips.

Posted by ZKuJoe, 05-13-2012, 07:44 PM
netstat is a godsend for tracking network stuffs.

Posted by Server Management, 05-13-2012, 07:45 PM
I would start blocking the IP's at the firewall level then proceed to report the ranges, etc Regards,



Was this answer helpful?

Add to Favourites Add to Favourites    Print this Article Print this Article

Also Read
Ezzi.net Down (Views: 896)


Language: