January 25, 2018, 18:24:10
Welcome, Guest. Please login or register
News:

Hot Chills



collapse

* Server Information

Name:
IP:83.209.176.183
Port:36963
Map:
Players:0  [Hover]
Ranks:[Link]
Traffic:[Link]

* Who's Online

  • Dot Guests: 3
  • Dot Hidden: 0
  • Dot Users: 2
  • Dot Users Online:

* Recent Posts

Re: HC => Fws by Nighthawk
[December 17, 2017, 01:07:55]


Re: HC => Fws by Range Rover
[December 09, 2017, 16:33:17]


Re: HotChills.org will close on January 27 by Maloo
[November 28, 2017, 22:47:06]


Re: HotChills.org will close on January 27 by Bounty Hunter
[November 28, 2017, 18:29:07]


Re: HotChills.org will close on January 27 by siN
[November 28, 2017, 10:45:22]

Author Topic: FORCE PORTS or Riot?  (Read 1381 times)

EvaldasHack

  • Guest
FORCE PORTS or Riot?
« on: May 22, 2015, 00:59:19 »
Hey guys,
I have simple plan how to stop DoS and DDoS attacks in CS2D.
First we need to contact with other nice projects like FwS servers / GAY TOWN / and others.
We should spread in forums message, that we all need to FORCE PORTS on 36963.

Because attacks from "UDP Unicorn, LOIC, HOIC, Any other shitty GUI witch can launch DoS attack" Is sending packets with random source ports. Thats why we need to block every fucking port and leave only 36963 with simple commands:
Code: [Select]
#First we whitelist our selfs, becaus we dont want to block our vps server
sudo iptables -A INPUT --source YOUR_IP -j ACCEPT
sudo iptables -P INPUT DROP
sudo iptables -A INPUT -p udp --sport 36963 -j ACCEPT
sudo iptables -A INPUT -p udp --sport 36963 -m length --length 1200:65535 -j DROP
sudo iptables -A INPUT -p udp --sport 36963 -m length --length 28 -j DROP
sudo iptables -A INPUT -p udp --sport 36963 -m length --length 1024 -j DROP
Same shit with DDoS just attacks are launched from web. As power source they using Voxality servers, because they allow spoofing.


WAITING FOR OPINIONS.
 

Offline Nighthawk

  • CS2D Moderator
  • Sr. Member
  • *
  • Posts: 416
    • View Profile
    • ayy
Re: FORCE PORTS or Riot?
« Reply #1 on: May 22, 2015, 01:50:26 »
Fws (and other) Servers are portforwarded as well so it can't be just that one port running.
Connections for the servers(VPS, not cs2d) are made on other ports as well. Incase anyone is running something else, those ports will be blocked as well.
Other than that, I doubt anyone will bear to follow this because blocking every port except for 1 is a really bad idea. O.o
« Last Edit: May 22, 2015, 01:52:42 by Nighthawk »

EvaldasHack

  • Guest
Re: FORCE PORTS or Riot?
« Reply #2 on: May 22, 2015, 09:55:08 »
Hahaha, you dont understand me.
I want that players would be forced on ports 36963, not servers.
Or make player port range from 36963 to 37000.
« Last Edit: May 22, 2015, 10:20:33 by EvaldasHack »

Offline Bounty Hunter

  • Moderator
  • Hero Member
  • *****
  • Posts: 1132
  • Tf you starin at?
    • View Profile
Re: FORCE PORTS or Riot?
« Reply #3 on: May 23, 2015, 11:48:10 »
Hahaha, you dont understand me.
I want that players would be forced on ports 36963, not servers.
Or make player port range from 36963 to 37000.

I think that's really clever suggestion.
Rush b with P90

EvaldasHack

  • Guest
Re: FORCE PORTS or Riot?
« Reply #4 on: May 23, 2015, 12:23:59 »
I thought about port range and made decision that port 36963 to 37000 is to big, so 36963 to 36970 would be even better, max clients from same ip would be 7 and no zbot attacks.
Also i made thread in fws forum

Offline Nighthawk

  • CS2D Moderator
  • Sr. Member
  • *
  • Posts: 416
    • View Profile
    • ayy
Re: FORCE PORTS or Riot?
« Reply #5 on: May 23, 2015, 20:47:44 »
The only issue is that many players may not use this method or they may be completly newbies and may not know how to work with ports.

EvaldasHack

  • Guest
Re: FORCE PORTS or Riot?
« Reply #6 on: May 23, 2015, 23:25:57 »
Well default port is 36963 so they already have access to servers.
But to avoid more problems we need to create thread in USGN.de about this plan and ask DC to make port range in next update. But i can't do this alone, because DC knows who I'm, and he don't like to talk about DDoS thing.. First i collecting group of people who could post in the thread something like "I agree with Evaldas, If DC makes port range smaller we could stop Hackers" Maybe some will bypass this firewall, but thousand others will be stucked under wall.
We should first chat with other cs2d projects, to get more people into it.

Offline Bounty Hunter

  • Moderator
  • Hero Member
  • *****
  • Posts: 1132
  • Tf you starin at?
    • View Profile
Re: FORCE PORTS or Riot?
« Reply #7 on: May 24, 2015, 18:52:32 »
Well, if you won't mind, I'll be next person in your group, cause i really agree with you.
Rush b with P90

EvaldasHack

  • Guest

 

Carbonate design by Bloc
variant: carbon
SMF 2.0.3 | SMF © 2013, Simple Machines
SimplePortal 2.3.5 © 2008-2012, SimplePortal