2021 DDoS Issue

c1:00.0 Ethernet controller: Intel Corporation Ethernet Controller 10-Gigabit X540-AT2 (rev 01)
c1:00.1 Ethernet controller: Intel Corporation Ethernet Controller 10-Gigabit X540-AT2 (rev 01)

I bought a really fancy 10Gbps ethernet card after our mobo's network card blew.
Nice card. I use them myself for various projects.

That being said we now need to have our Routers/Switches have 10gbps capable internally as well as externally.

Is 8 ports (internal network) and 2 ports (external/colo) enough networking ports for your server stack or do you need more ports for your servers?
 
What is the easiest way to claim your bitcoin fork coins (e.g. BTG) and convert them to something useful?
I just sold them all on the biggest exchange in my country, used that credit to buy litecoin, sent it to a wallet, and then sent the LTC to the address at the bottom of the website page.
 
They also tend to be financially irresponsible. They're going to regret wasting all of their NEET Bucks to DDOS a gossip forum when the next product to consoom comes out.
They are all on welfare/social security for their "disorders" so it'll be American's who end up paying for them to buy the next iDevice when it comes out to post their hatred on Twitter.

Also, most of these fuckwits live together in a commune style so they can have all the degenerate chicanery propagate amongst them like the true Troglodytes they are.
 
c1:00.0 Ethernet controller: Intel Corporation Ethernet Controller 10-Gigabit X540-AT2 (rev 01)
c1:00.1 Ethernet controller: Intel Corporation Ethernet Controller 10-Gigabit X540-AT2 (rev 01)

I bought a really fancy 10Gbps ethernet card after our mobo's network card blew.
Stupid idea time:

If you just need something with capacity to clean up incoming shit, I would put both current and 2nd 1G Colo line into basic L2 switch and then hang multiple routers off the switch, each advertising different IP ranges. Web server can advertise on each IP, and set up round robin DNS between IP ranges. Sounds like you need more routing capacity, and may be easier to acquire a couple of refurb/nearly new 1G routers than a single massive 10G router that can both route 10G and also deal with incoming shit traffic.
 
The upside is, once we have 10Gbps and the new device (FINALLY coming in this week) we can set up a PeerTube instance and do video hosting. Exciting times.
eyes.png


I AM GROWING STRONGER

Thread music :semperfidelis:

 
Stupid idea time:

If you just need something with capacity to clean up incoming shit, I would put both current and 2nd 1G Colo line into basic L2 switch and then hang multiple routers off the switch, each advertising different IP ranges. Web server can advertise on each IP, and set up round robin DNS between IP ranges. Sounds like you need more routing capacity, and may be easier to acquire a couple of refurb/nearly new 1G routers than a single massive 10G router that can both route 10G and also deal with incoming shit traffic.
This is the right idea but I feel it's missing something about how the L2 switch connects to the Colo over 10gb as streaming video (which is a requirement of KF4.1 ) is coming.
You'd have 2 network lines from the Colo with redundancy, these connect to the switch, which then passes the network traffic to the pair of routers to handle distribution/access.
The goal is to filter as much bullshit from the TroonSquad as possible while passing 'valid' requests to the server(s) behind the Firewalls.
 
Odd question but you mentioned that you're moving the servers back to the US, does your colo not offer DoS protection?
I'm not familiar with how your network is laid out but lot of colos in the US offer integrated DoS deterrence if you use their managed internet services.
 
This is the right idea but I feel it's missing something about how the L2 switch connects to the Colo over 10gb as streaming video (which is a requirement of KF4.1 ) is coming.
You'd have 2 network lines from the Colo with redundancy, these connect to the switch, which then passes the network traffic to the pair of routers to handle distribution/access.
The goal is to filter as much bullshit from the TroonSquad as possible while passing 'valid' requests to the server(s) behind the Firewalls.

Yeah - depends on what the Colo connection looks like.

Also curious what incoming shit traffic is like - if it's not actually valid TCP sessions, you could just get away with a server with a couple of linecards and some IPtables rules. Stick it ahead of the router and let it filter shit, allow router CPU to focus on routing.

Also wondering if Null has done any packet capture on the Colo interface to see what kind of traffic it is?
 
I need at least 3 SFP+ ports. I'm also not going to buy another Mikrotik because I am pissed about this management interface shit.
Eh, it's no Cisco/Sonicwall that's for sure. The management is clunky but it's powerful at the CLI.
Is that 3SFP+ internally and 2 SFP+External to the Colo?
I suggest you look at Netgate and PFSense as the management interface is stupid simple and powerful as anything you'd get from a major vendor and not break the bank. Install one of their systems and then later on buy a second for High Availability, Failover, and Round Robin.
 
You should become a beautiful and stunning transwoman so they're not allowed to harass you anymore. We do a lot for you by reading your forum for free so I don't think it's too much for us to ask that you take one for the team and cut your dick off to keep our free entertainment forum online.
Just become non-binary.
Same effect without any work.
 
Back