Mitigating a DDoS on Mastodon
coffee-and-dreams.uk
Mitigating a DDoS on Mastodon
1–10 of 67 posts
Re: Mitigating a DDoS on Mastodon
#2Re: Mitigating a DDoS on Mastodon
#3Re: Mitigating a DDoS on Mastodon
#4Re: Mitigating a DDoS on Mastodon
#5On the subject of the IP leaking: Note that IPv4 only has 2^32 addresses, and people can and do mass scan all of them (see here shodan.io). If your service is exposing any identifiable information (ie. if it's not completely blocking all non-cloudflare IPs) then it's fairly easy to find even if it's "unguessable".
Re: Mitigating a DDoS on Mastodon
#6Re: Mitigating a DDoS on Mastodon
#7Great write-up. As someone unfamiliar with the legal side of this, would it be worth the author contacting law enforcement of some kind?
Re: Mitigating a DDoS on Mastodon
#8That's at least how I think a federated system should work. Not sure if reality matches that.
Re: Mitigating a DDoS on Mastodon
#9Is a federated system like Mastodon not setup in a way that users have access lists and if one server is down they simply connect to the next? I would expect to just limit the access to my server in a way that no illegal content is added to its storage and I don't have to pay horrendous fees for the network traffic and then just let the DDOS happen. At some point it needs to stop since the DDOSer will find nicer targ…
Re: Mitigating a DDoS on Mastodon
#10Is a federated system like Mastodon not setup in a way that users have access lists and if one server is down they simply connect to the next? I would expect to just limit the access to my server in a way that no illegal content is added to its storage and I don't have to pay horrendous fees for the network traffic and then just let the DDOS happen. At some point it needs to stop since the DDOSer will find nicer targ…