Earlier quoted context omitted.
Serving a captcha page is more work than serving a static page.
You can block with firewall IPs of users, who didn't solve captcha. You will get only SYNs from incoming connection requests then.
We are under attack
191–200 of 283 posts
Re: We are under attack
#192Earlier quoted context omitted.
CloudFlare is probably not a good choice. They recently blocked access to a similar service, Lantern, per the linked WSJ article. "CloudFlare, which offers content-delivery network services, said last week it cut off Lantern’s use of the service, saying it was unauthorized. “We don’t do anything to thwart the content restrictions in China or other countries,” said Matthew Prince, chief executive of CloudFlare. “We’re…
> "We don’t do anything to thwart the content restrictions in China or other countries," said Matthew Prince, chief executive of CloudFlare. "We’re a tech company and we comply with the law." There's a popular idea that businesses (and people) have no responsibilities to anyone but themselves, because what they have is theirs; they built it themselves. But if you think about it a little, it's obviously false. Here's…
Cloudflare, I'm sure, will happily ignore any laws like that. The question is: why not ignore this too?
Re: We are under attack
#193Earlier quoted context omitted.
I feel it shouldn't be unreasonable to expect AWS/Cloudflare/Akamai to have policy-based routing to blackhole a lot of these source subnets. Of course it's complex, but these are some of the largest hosting providers in the world.
I've found this is a common thing to say with AWS employees. One of them insisted that Amazon's ridiculous ephemeral storage policy (immediate, permanent, and irrevocable deletion on any halt or stop event, making accidental data loss a real possibility) had to be that way because it would just take too much hardware to allow a cooldown period before the drives were wiped. There's no way I believe that. I think Amazo…
Re: We are under attack
#194Move to OVH -- they offer free DDoS protection as standard, and unlimited bandwidth. I just moved to OVH after getting DDoSed. I'm paying $109/month for a quad core 3.7Ghz Xeon, 64GB RAM, dual 2TB software RAID. It's a pretty sweet deal, and I haven't had any problems so far.
That sounds too good to be true. I guess after a 24/7 china DDoS their costs are higher than that and they ask for more.
Re: We are under attack
#195Earlier quoted context omitted.
The point of their website is to make censored content available to Chinese users. China is attacking them to prevent Chinese people from reading the website. Your suggestion is to make the site unavailable to China. Do you see why it is not a solution? You are basically setting up a market for censorship-- the attack doesnt ever have to end-- depending on how much China is willing to pay to keep the website offline.
OTOH if the great firewall already blocks this site, wouldn't that mean normal Chinese citizens would access it through a VPN via another country?
Re: We are under attack
#196Re: We are under attack
#197Earlier quoted context omitted.
Actually the Prolexic product is one of the most innovative and effective one we've seen to date. DDoS attacks are not a commodity issue, you have to pay to play..Not sure how that makes Akamai horrible..
I can confirm that Akamai is a pain to deal with. Defense.Net as well. Cloudflare is what I would chose but they are siding with the Chinese gov't at this point.
Re: We are under attack
#198Move to OVH -- they offer free DDoS protection as standard, and unlimited bandwidth. I just moved to OVH after getting DDoSed. I'm paying $109/month for a quad core 3.7Ghz Xeon, 64GB RAM, dual 2TB software RAID. It's a pretty sweet deal, and I haven't had any problems so far.
Wow, I haven't done dedicated hosting in a long time, the prices are insane there! https://www.ovh.com/us/dedicated-servers/enterprise/2014-MG-... Thanks for posting :-) I've been looking for provider possibilities for my next failed startup. I'm not sure how they can deliver for that price but who am I to complain!
And if you don't need any support or server hardware, give kimsufi a look.
I do not work for OVH, but am so impressed by their automation and value in this field I refuse to use anyone else.
Re: We are under attack
#199Earlier quoted context omitted.
http://en.wikipedia.org/wiki/Coral_Content_Distribution_Netw...
Not sure if it can handle the load...
Re: We are under attack
#200I think they need to use something similar to this ... http://en.wikipedia.org/wiki/Coral_Content_Distribution_Netw...