Skip to Content.
Sympa Menu

discuss - Re: [opennic-discuss] D.N.S. accounts?

discuss AT lists.opennicproject.org

Subject: Discuss mailing list

List archive

Re: [opennic-discuss] D.N.S. accounts?


Chronological Thread 
  • From: Alex Hanselka <alex AT opennicproject.org>
  • To: discuss AT lists.opennicproject.org
  • Subject: Re: [opennic-discuss] D.N.S. accounts?
  • Date: Sun, 15 Apr 2012 23:53:29 -0500

It is completely custom tailored to attacks we tend to see on our T2s,
specifically Jeff's. fail2ban tends to just completely ban TCP which
isn't the right way.

To use it, run it AS ROOT in some sort of thing like tmux or screen to
watch the output. I've never ran it without debugging, but if you do you
can just start it as a daemon.

On 4/15/2012 11:51 PM, Amrit Panesar wrote:
> I'm guessing it works differently than Fail2Ban for BIND?
>
>
> On 4/15/2012 9:42 PM, Maximi89 wrote:
>> as far as they told me time ago, you just execute the script in the
>> terminal, then the script do what it need to do, but i guess the
>> Script detect how many queries are made by seconds or something like
>> that i guess...
>>
>> 2012/4/15 Hospedaje Web y Servidores Dedicados <ventas AT dedicados.com.mx>:
>>> How do you run the script?? Is there any way to make it work automatic?
>>>
>>> When a ddos is detected?
>>>
>>>
>>>
>>> --
>>> Ing. Alejandro M.
>>> -----------------------
>>> Hospedaje Web y Servidores Dedicados
>>> http://www.dedicados.com.mx
>>> -----------------------
>>> ventas AT dedicados.com.mx
>>> -----------------------
>>>
>>> -----Original Message-----
>>> From: Jeff Taylor <shdwdrgn AT sourpuss.net>
>>> Sender: discuss-request AT lists.opennicproject.org
>>> Date: Sun, 15 Apr 2012 21:22:35
>>> To: <discuss AT lists.opennicproject.org>
>>> Reply-To: discuss AT lists.opennicproject.org
>>> Subject: Re: [opennic-discuss] D.N.S. accounts?
>>>
>>> I've posted some updates to the ddos.pl script on the wiki. The current
>>> version has not been touched in the past week and has been working on my
>>> own systems. You will want to edit NETDEV and NETMASK to suit your
>>> servers, but the rest of the values should be fine as they are.
>>>
>>>
>>> On 04/05/2012 05:29 PM, Brian Koontz wrote:
>>>> Peter--
>>>>
>>>> You might be interested in this script to help with the DDOS issues:
>>>>
>>>> http://wiki.opennic.glue/ddosDotPl
>>>>
>>>> (shdwdrgn on #opennic)
>>>>
>>>> --Brian
>>>>
>>
>




Archive powered by MHonArc 2.6.19.

Top of Page