Live data from Hacker News

DDOS on Namecheap Free DNS and Default DNS V2

status.namecheap.com

31–40 of 119 posts

Re: DDOS on Namecheap Free DNS and Default DNS V2

#32
post #23
post #15

We are in the process of mitigating a large scale DDoS attack against our global DNS platform. We expect service to return to normal very shortly. Stay tuned and let me know if you have any questions. ted@namecheap.com

You guys should really put a notice on your homepage or something. Good luck.

The homepage wasn't accessible until just a bit ago. We're still working on it.

tamar (also at Namecheap)

Re: DDOS on Namecheap Free DNS and Default DNS V2

#33
post #3

Any good suggestions for alternative DNS providers?

Instead of putting all of your eggs in (yet another) one basket, for a site with critical availability requirements I would distribute DNS over multiple providers. If any one provider goes down it is less likely to hurt overall site availability.

Re: DDOS on Namecheap Free DNS and Default DNS V2

#34
post #30
post #15

We are in the process of mitigating a large scale DDoS attack against our global DNS platform. We expect service to return to normal very shortly. Stay tuned and let me know if you have any questions. ted@namecheap.com

You need to provide some gift to your customers for this downtime. I am using NC for 10 years, every time on bad issues I continue to use. But this outage very bad, I lost money...

DDOS attacks are not up to Namecheap. You want money, go talk to the people doing it. These are very hard to prevent.

Re: DDOS on Namecheap Free DNS and Default DNS V2

#35
post #12
post #8

Earlier quoted context omitted.

Depends on the TTL (time to live) settings for the DNS entries, doesn't it?

Yes, perhaps there lies our folly. It's the choice between being flexible in ability to move our servers really quick, or being tolerant of DNS servers going down. I sort of hoped that a DNS client would just use an expired DNS result in case the servers would not respond, but perhaps that is naieve/dumb.

> I sort of hoped that a DNS client would just use an expired DNS result in case the servers would not respond

This would break the whole concept of TTLs.

> but perhaps that is naieve/dumb.

Not at all. Hard problems are hard to solve.

Re: DDOS on Namecheap Free DNS and Default DNS V2

#36
post #22
post #15

We are in the process of mitigating a large scale DDoS attack against our global DNS platform. We expect service to return to normal very shortly. Stay tuned and let me know if you have any questions. ted@namecheap.com

Just for future reference, it's usually considered a good idea to put your status page on completely independent infrastructure so that it stays up even when the rest of your stuff goes down. A status page that doesn't work during an outage isn't particularly useful.

If the hackers really want to take you down, adding another server in isn't very hard...

Re: DDOS on Namecheap Free DNS and Default DNS V2

#37
post #10
post #7

Earlier quoted context omitted.

I moved most of my stuff to Route53 awhile back and for the most part I don't regret it.

Pricing doesn't seem too bad. $0.50 for a zone (domain) and $0.50 for a billion queries: http://aws.amazon.com/route53/pricing/

We're using Route 53 in production to handle hundreds of millions of queries per month. We're happy with it, and the price is reasonable. Also, service checks with failover is heavenly.

Re: DDOS on Namecheap Free DNS and Default DNS V2

#38
post #30
post #15

We are in the process of mitigating a large scale DDoS attack against our global DNS platform. We expect service to return to normal very shortly. Stay tuned and let me know if you have any questions. ted@namecheap.com

You need to provide some gift to your customers for this downtime. I am using NC for 10 years, every time on bad issues I continue to use. But this outage very bad, I lost money...

[deleted]

Re: DDOS on Namecheap Free DNS and Default DNS V2

#39
post #22

Earlier quoted context omitted.

Just for future reference, it's usually considered a good idea to put your status page on completely independent infrastructure so that it stays up even when the rest of your stuff goes down. A status page that doesn't work during an outage isn't particularly useful.

If the hackers really want to take you down, adding another server in isn't very hard...

If you're as big as NameCheap, you can afford to pay CloudFlare or somebody like it to protect your status page.

Re: DDOS on Namecheap Free DNS and Default DNS V2

#40
post #30

Earlier quoted context omitted.

You need to provide some gift to your customers for this downtime. I am using NC for 10 years, every time on bad issues I continue to use. But this outage very bad, I lost money...

DDOS attacks are not up to Namecheap. You want money, go talk to the people doing it. These are very hard to prevent.

[deleted]
Post reply on HN