Jump to content



Photo

[Howto] Install Anti (D)Dos Deflate


  • This topic is locked This topic is locked
No replies to this topic

#1 Arctic

Arctic

    Haphost Staff

  • Moderators
  • 341 posts
  • LocationGermany

Posted 31 March 2015 - 04:30 PM

(D)DoS Deflate is a lightweight bash shell script designed to assist in the process of blocking a denial of service attack. It utilizes the command below to create a list of IP addresses connected to the server, along with their total number of connections. It is one of the simplest and easiest to install solutions at the software level.

netstat -ntu | awk '{print $5}' | cut -d: -f1 | sort | uniq -c | sort -n

IP addresses with over a pre-configured number of connections are automatically blocked in the server's firewall, which can be direct iptables or Advanced Policy Firewall (APF). (We highly recommend that you use APF on your server in general, but deflate will work without it.)

 

Notable Features

 

- It is possible to whitelist IP addresses, via /usr/local/ddos/ignore.ip.list.

- Simple configuration file: /usr/local/ddos/ddos.conf

- IP addresses are automatically unblocked after a preconfigured time limit (default: 600 seconds)

- The script can run at a chosen frequency via the configuration file (default: 1 minute)

- You can receive email alerts when IP addresses are blocked.

 

Installation

wget http://www.inetbase.com/scripts/ddos/install.sh

chmod 0700 install.sh

./install.sh

Uninstallation

wget http://www.inetbase.com/scripts/ddos/uninstall.ddos
chmod 0700 uninstall.ddos
./uninstall.ddos

Questions?

send me a PM with the subject DDoS Deflate

 

 


  • xdmartinhi, spookieman and Pete like this

any support PM's be Ignored please use the Support section for it

 

Support





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users