Results 1 to 6 of 6

Thread: Firewalls

  1. #1
    Join Date
    Nov 2002
    Posts
    47

    Firewalls

    If I'd provide IRC access, which is prone to DoS attacks, and the DC doesn't provide any firewall options, do I get my own? which ones are recommended?

  2. #2
    Join Date
    Jul 2002
    Location
    kansas city
    Posts
    205
    You dont have to, but it may be in your best interests. Also depending the how heavy of an attack it is, it could cost you your colocation.. there are very few providers that will put up with ddos attacks.

    httpd.net/foonet however specializes in exactly what you are looking for and I would suggest you check there if you are serious about providing irc access, or marketing in that field.
    - brian

    failing to plan is planning to fail.

  3. #3
    Join Date
    Nov 2002
    Posts
    47
    Yeah, I've checked that out, it'll be expensive in the long run. So I'm considering on getting a firewall of my own.

  4. #4
    Join Date
    Jan 2002
    Location
    SoCal
    Posts
    71
    Originally posted by Reference
    Yeah, I've checked that out, it'll be expensive in the long run. So I'm considering on getting a firewall of my own.
    A firewall won't do anything for you.

    With a proper DDOS attack you have no way of determining what and what isn't "improper" traffic. Additionally, once the traffic hits your firewall, even if you are blocking "bad" traffic, you'll still get charged for the bandwidth unless you can get your upstream provider to do some blocking for you.

  5. #5
    Join Date
    Nov 2002
    Posts
    47
    In which httpd has the solutions?

  6. #6
    Join Date
    Sep 2002
    Location
    Mansfield
    Posts
    314
    Originally posted by jstout


    A firewall won't do anything for you.

    With a proper DDOS attack you have no way of determining what and what isn't "improper" traffic. Additionally, once the traffic hits your firewall, even if you are blocking "bad" traffic, you'll still get charged for the bandwidth unless you can get your upstream provider to do some blocking for you.
    Make sure your DC/provider "allows" irc but also be aware they do not distinguish between successful websites and DDOS attacks - it's all bandwdith and all billable.

    Might be easier to run mailservers for spammers - less grief, more money.
    GUI admin tools have no honor. It is a good day to vi.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •