vitinhcomputer
W-------
-
05/07/2016
-
3
-
23 bài viết
Nhờ hỗ trợ giải pháp IP bị DDOS từ nước ngoài gây nghẽn bandwidth
Hi mọi người,
Nhờ mọi người hỗ trợ tìm giải pháp giúp
Hiện tại server công ty mình đang chạy website bị DDos từ nước ngoài gây full traffic quốc tế nên mỗi lần bị DDos là bên datacenter họ chặn hướng quốc tế
Mình kiểm tra logs họ gửi thì 1s có khoảng 2000 request từ nguồn IP nước ngoài tới IP của server mình.
theo như logs mình đã chặn PING tới server nhưng khi bị DDOS thì không có tác dụng
LOGS
"Number" "Date" "Time" "Type" "Action" "Service" "Source Port" "Source" "Destination" "Protocol" "Information"
"429665" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "198.151.61.11" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429666" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "211.233.25.17" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429667" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "79.236.1.176" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429668" "28Aug2017" "12:30:24" "Log" "Accept" "http" "31972" "141.106.102.123" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429669" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "93.215.63.83" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429670" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "202.112.53.133" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429671" "28Aug2017" "12:30:24" "Log" "Drop" "80" "" "12.85.250.83" "X.X.X.X" "6" "TCP flags: SYN"
"429673" "28Aug2017" "12:30:24" "Log" "Accept" "http" "41836" "79.227.180.152" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429674" "28Aug2017" "12:30:24" "Log" "Accept" "http" "9423" "150.120.242.49" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429675" "28Aug2017" "12:30:24" "Log" "Reject" "194" "50796" "23.237.0.78" "X.X.X.X" "6" ""
"429677" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "98.124.60.2" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429678" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "216.150.136.52" "X.X.X.X" "1" "ICMP: Port Unreachable; ICMP Type: 3; ICMP Code: 3; message_info: ICMP error does not match an existing connection"
"429679" "28Aug2017" "12:30:24" "Log" "Accept" "http" "6640" "162.24.12.217" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429680" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "37.97.226.17" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 10; message_info: ICMP error does not match an existing connection"
"429681" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "94.216.133.177" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429682" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "69.7.82.114" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429683" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "93.212.161.63" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429685" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "204.148.81.137" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429686" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "66.18.168.210" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429687" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "213.187.132.229" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429688" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "84.166.16.61" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429689" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "118.103.59.54" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429741" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "138.219.20.7" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429742" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "77.109.168.24" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429744" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "154.197.43.126" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 10; message_info: ICMP error does not match an existing connection"
"429745" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "178.8.156.224" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
Nhờ mọi người hỗ trợ tìm giải pháp giúp
Hiện tại server công ty mình đang chạy website bị DDos từ nước ngoài gây full traffic quốc tế nên mỗi lần bị DDos là bên datacenter họ chặn hướng quốc tế
Mình kiểm tra logs họ gửi thì 1s có khoảng 2000 request từ nguồn IP nước ngoài tới IP của server mình.
theo như logs mình đã chặn PING tới server nhưng khi bị DDOS thì không có tác dụng
LOGS
"Number" "Date" "Time" "Type" "Action" "Service" "Source Port" "Source" "Destination" "Protocol" "Information"
"429665" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "198.151.61.11" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429666" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "211.233.25.17" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429667" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "79.236.1.176" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429668" "28Aug2017" "12:30:24" "Log" "Accept" "http" "31972" "141.106.102.123" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429669" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "93.215.63.83" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429670" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "202.112.53.133" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429671" "28Aug2017" "12:30:24" "Log" "Drop" "80" "" "12.85.250.83" "X.X.X.X" "6" "TCP flags: SYN"
"429673" "28Aug2017" "12:30:24" "Log" "Accept" "http" "41836" "79.227.180.152" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429674" "28Aug2017" "12:30:24" "Log" "Accept" "http" "9423" "150.120.242.49" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429675" "28Aug2017" "12:30:24" "Log" "Reject" "194" "50796" "23.237.0.78" "X.X.X.X" "6" ""
"429677" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "98.124.60.2" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429678" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "216.150.136.52" "X.X.X.X" "1" "ICMP: Port Unreachable; ICMP Type: 3; ICMP Code: 3; message_info: ICMP error does not match an existing connection"
"429679" "28Aug2017" "12:30:24" "Log" "Accept" "http" "6640" "162.24.12.217" "X.X.X.X" "6" "inzone: External; outzone: Internal; service_id: http"
"429680" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "37.97.226.17" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 10; message_info: ICMP error does not match an existing connection"
"429681" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "94.216.133.177" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429682" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "69.7.82.114" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429683" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "93.212.161.63" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429685" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "204.148.81.137" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429686" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "66.18.168.210" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429687" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "213.187.132.229" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429688" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "84.166.16.61" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"
"429689" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "118.103.59.54" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429741" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "138.219.20.7" "X.X.X.X" "1" "ICMP: Time-To-Live Count Exceeded; ICMP Type: 11; ICMP Code: 0; message_info: ICMP error does not match an existing connection"
"429742" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "77.109.168.24" "X.X.X.X" "1" "ICMP: Host Unreachable; ICMP Type: 3; ICMP Code: 1; message_info: ICMP error does not match an existing connection"
"429744" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "154.197.43.126" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 10; message_info: ICMP error does not match an existing connection"
"429745" "28Aug2017" "12:30:24" "Log" "Drop" "" "" "178.8.156.224" "X.X.X.X" "1" "ICMP: Destination Unreachable; ICMP Type: 3; ICMP Code: 13; message_info: ICMP error does not match an existing connection"