Live data from Hacker News

We are under attack

en.greatfire.org

171–180 of 283 posts

Re: We are under attack

#171

Earlier quoted context omitted.

Wow, I haven't done dedicated hosting in a long time, the prices are insane there! https://www.ovh.com/us/dedicated-servers/enterprise/2014-MG-... Thanks for posting :-) I've been looking for provider possibilities for my next failed startup. I'm not sure how they can deliver for that price but who am I to complain!

I think the reason they can offer it so cheap is a combination of scale, cheap electricity, and tax breaks. iWeb is also in Quebec, so I figured there must be some tax break. Lo and behold there is one heck of a tax break: http://www.investquebec.com/quebec/en/financial-products/smb... Basically the Quebec government pays 24% of your company's wages, up to $83,333 per employee!

It's actually even better than that because there's also a national program that pays up to 35% of R&D salaries: http://www.cameronhuff.com/blog/ontario-tax-credits-for-soft.... There are hundreds of smaller special programs that can pay even more (and they often stack).

Re: We are under attack

#172

Earlier quoted context omitted.

I was unaware they had a monopoly on language usage. A byte is not an SI unit. Base2 is vastly more defensible and natural than base10. The real issue is that everyone in networking likes round base10 numbers divided over some arbitrary cesium fluctuations. This leads to 1GB / 1Gbps not being 8 seconds, which is confusing. But in JEDEC's and others defense: "why should I have to change, he's the one that sucks."

Because the "he" in question is the relevant standards authority.

The IEEE and/or SI are in charge of language? The same IEEE that sends car insurance offers to its members, just so we're clear. JEDEC is also a standards group, and they disagree. What now, a Wikipedia editing war to determine the victor?

Standards bodies aren't anything magical, and I don't get the slavish following they seem to get. So an RFC says something, or another group mandates something. BFD. Unless you're expecting interop to work, use standards as you see fit. They aren't an ends unto themselves.

In this case "GB", when referring to RAM is unambiguous. Only disingenuous cloud providers or petty editors would use a base 10 interpretation.

Re: We are under attack

#173

Earlier quoted context omitted.

Please, don't perceive this as being rude, it's not meant to be. Having provided IP transit at a largish network provider in a previous life, you have no idea at the complexity involved what you're asking for. It could be done, but the costs involved are non-trivial. If you're honestly interested in the complexity involved, start reading about BGP, dynamic routing protocols, router/switch fabrics, control plane integ…

I feel it shouldn't be unreasonable to expect AWS/Cloudflare/Akamai to have policy-based routing to blackhole a lot of these source subnets. Of course it's complex, but these are some of the largest hosting providers in the world.

I've found this is a common thing to say with AWS employees. One of them insisted that Amazon's ridiculous ephemeral storage policy (immediate, permanent, and irrevocable deletion on any halt or stop event, making accidental data loss a real possibility) had to be that way because it would just take too much hardware to allow a cooldown period before the drives were wiped. There's no way I believe that. I think Amazon is just used to intimidating customers with exactly that line of reasoning: "No offense, but you have no idea how hard the cloud is", and people buy it because "the cloud" is the new hotness.

Re: We are under attack

#174
I think one of the companies which are responsible for the attack is :("Qihoo 360" or the "Company") (NYSE: QIHU)

Most of the PC in China have install Qihoo 360. It is actually a spy software. It collect user information, I think it must be used to launch a DDOS attack.

DON'T BUY THEIR STOCK!!!!

Re: We are under attack

#176
post #164

Earlier quoted context omitted.

OTOH if the great firewall already blocks this site, wouldn't that mean normal Chinese citizens would access it through a VPN via another country?

If normal citizens had access to a VPN in which to access this site from another country, it would be quite redundant to use this site then wouldn't it? Maybe I'm not understanding.

If normal citizens have access to it without a VPN, then why doesn't China just block it with the firewall instead of ddosing?

Maybe I'm not understanding.

Re: We are under attack

#177
post #176

Earlier quoted context omitted.

If normal citizens had access to a VPN in which to access this site from another country, it would be quite redundant to use this site then wouldn't it? Maybe I'm not understanding.

If normal citizens have access to it without a VPN, then why doesn't China just block it with the firewall instead of ddosing? Maybe I'm not understanding.

Yeah, no -- my fault. I wrongly assumed it was some type of proxy or way to get around the great firewall.

Re: We are under attack

#178
post #24

Contact Akamai who recently bought the DDOS mitigation service Prolexic. They may be able to mitigate the attack and save you bandwidth costs. Alternatively, call CloudFlare. Don't just absorb this through Amazon.

Don't call Akamai. Never call Akamai. They are horrible. Try Incapsula, GigENet, Blacklotus, Cloudflare first.

Agreed. Can't understand why I never see DosArrest on these lists though. They've been doing DDOS protection for a while and are good at it AFAIK. That said, I have no idea if they are interested in taking on the Chinese government.

Re: We are under attack

#179
post #79
post #36

Earlier quoted context omitted.

CloudFlare is probably not a good choice. They recently blocked access to a similar service, Lantern, per the linked WSJ article. "CloudFlare, which offers content-delivery network services, said last week it cut off Lantern’s use of the service, saying it was unauthorized. “We don’t do anything to thwart the content restrictions in China or other countries,” said Matthew Prince, chief executive of CloudFlare. “We’re…

What do you expect? One third of CloudFlare's planned data centers are in China [1]. It's commercial suicide to not comply. [1]: https://blog.cloudflare.com/one-more-thing-keyless-ssl-and-c...

Similar to not comply with the wishes of the United States. Qwest communications didn't comply with the NSA wishes and are now out of business. http://www.businessinsider.com/the-story-of-joseph-nacchio-a...

Same thing with anyone who operates in China. The only difference is China is more transparent with their demands.

Re: We are under attack

#180
post #36

Contact Akamai who recently bought the DDOS mitigation service Prolexic. They may be able to mitigate the attack and save you bandwidth costs. Alternatively, call CloudFlare. Don't just absorb this through Amazon.

CloudFlare is probably not a good choice. They recently blocked access to a similar service, Lantern, per the linked WSJ article. "CloudFlare, which offers content-delivery network services, said last week it cut off Lantern’s use of the service, saying it was unauthorized. “We don’t do anything to thwart the content restrictions in China or other countries,” said Matthew Prince, chief executive of CloudFlare. “We’re…

Excuse my ignorance.. is it really the case that website a gets ddosed, website a gets charged by amazon for the ddos traffic... and amazon isn't inclined to mitigate the attack? Will wonders never cease......?
Post reply on HN