Earlier quoted context omitted.
I was curious so I went and found this : https://geti2p.net/en/comparison/tor
``` Benefits of I2P over Tor ... Java, not C (ewww) ``` Excuse me?
Tor’s history of D/DoS attacks and future strategies for mitigation
81–90 of 103 posts
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#82Earlier quoted context omitted.
>But once cloudflare no longer wants you, your other options have a tendency to evaporate as well This! If the forces persecuting you made Cloudflare to drop you, and you go, you establish your own site and your own platform your own infrastructure, unless you have some billions lying around to put fiber optical cables over the oceans physically connecting your servers to the rest of the world, you will depend on oth…
I believe cloudflare drops if they cannot withstand the level of traffic you’re being hit with, which is an exception to your suggestion. As per other posts, if CF drops you, you won’t be able to build your own ddos mitigating infra without billions. Microsoft and Amazon offer similar services, but I’m guessing cloudflare offers the best resiliency based on ops specific naming of CF.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#83I think its worth mentioning that DDOS protection has become a tool to control online discourse. Once you get kicked off Cloudfare, thats mostly it for you if you have a determined attacker. Thats quite a beneficial situation for governments.
Have you actually run any sort of web service/website without Cloudflare? This sounds like something straight out of a sales reps mouth, obviously there is more solutions than just Cloudflare out there...
When I checked, some of the equivalents to Cloudflare's lower plans cost hundreds of dollars a month.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#84Another tor page says ddos attacks primarily use UDP packets, which tor doesn't allow: https://support.torproject.org/abuse/what-about-ddos/ So, is this an attack using a different method? And what about mitigating attacks on other networks/sites that originate from tor? The site I linked only said "attackers who control enough bandwidth to launch an effective DDoS attack can do it just fine without Tor." They didn't…
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#85Has anyone tried using TOR as a replacement for Cloudflare DDOS protection? There is a single hop mode on hidden services.
I've run it in NonAnonymous mode as an experiment. Not to replace a CDN for DDoS protection but to replace the CDN as a way to anonymize where the server is because people play games to try to cancel hosting accounts when they get mad about topics being discussed. When they can't control the narrative they will start emailing abuse@ making false claims and some hosting providers are lazy. From the DDoS aspect, people…
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#86Earlier quoted context omitted.
Have you actually run any sort of web service/website without Cloudflare? This sounds like something straight out of a sales reps mouth, obviously there is more solutions than just Cloudflare out there...
A lot of these solutions don't actually mitigate large DDoS attacks, or have enormous loopholes that can be bypassed by a novice attacker. I've heard that OVH's DDoS protection used to let in other OVH servers, for example. When I checked, some of the equivalents to Cloudflare's lower plans cost hundreds of dollars a month.
And why wouldn't they? If you're getting ddos'd on OVH from OVH, they'll just turn off the source of the traffic rather than trying to fight it on the receiving end.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#87I wish people stopped using discourse. Sending pictures of pieces of hand written paper over email would be a more user friendly and usable interface than this javascript mess.
Most of your typical self-hosted forums aren't much better, just more familiar.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#88I think its worth mentioning that DDOS protection has become a tool to control online discourse. Once you get kicked off Cloudfare, thats mostly it for you if you have a determined attacker. Thats quite a beneficial situation for governments.
Have you actually run any sort of web service/website without Cloudflare? This sounds like something straight out of a sales reps mouth, obviously there is more solutions than just Cloudflare out there...
99.9% of the time you literally don’t need their services.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#89I wish people stopped using discourse. Sending pictures of pieces of hand written paper over email would be a more user friendly and usable interface than this javascript mess.
This is a frustrating web experience for anyone who uses any custom bindings in a browser and it repeats itself every time I use one of these websites.
Lastly, I have no idea why forum software needs absolutely any javascript to just render a basic page. Discourse renders as a blank page with javascript disabled, that's just extremely unnecessary.
Re: Tor’s history of D/DoS attacks and future strategies for mitigation
#90I think its worth mentioning that DDOS protection has become a tool to control online discourse. Once you get kicked off Cloudfare, thats mostly it for you if you have a determined attacker. Thats quite a beneficial situation for governments.
Who got kicked off of Cloudflare? Because both the cases I can think of weren't because of governments and were the sorts of schmucks that you really don't want hanging around.