Ddos issues - help!

Status
This thread has been locked.

Escanor.

Banned
Feedback score
0
Posts
2
Reactions
0
Resources
0
Hello, anyone knows how can I block all ports on my servers, except the website = 80,443 and bungee port 25565 without problems?

I have tried everything and when i block ports, i can't go to my lobby and it says "timed out" - it probably cannot make some http requests, can anyone help me? I really need it, i have tried everything to block ddos attacks, blocking countries, limiting connections etc. not helping.
 
PebbleHost
High performance, consistent uptime and fast support. Minecraft hosting that just works.

Zed.X

Premium
Feedback score
5
Posts
224
Reactions
25
Resources
0
Hello there,
I would like to help you in this,
add me on discord [ AodX#7679 ] if you are still looking for someone to help you out!
 

Escanor.

Banned
Feedback score
0
Posts
2
Reactions
0
Resources
0
Yeah, everyone be like "I'll help you" and in the end they want big money for helping. "This may help but.. it may cost and not cheap at all" - not antiddos but some configuration by a guy that won't help lol
 
Banned forever. Reason: Creating Multiple Accounts (ImpR, https://builtbybit.com/members/impr.214062/)

Cole

Developer
Supreme
Feedback score
19
Posts
944
Reactions
477
Resources
0
If you're sure it's a DDoS attack, buy a new machine so you get a new backend and get TCPShield
 

raizo

Web/Software developer
Premium
Feedback score
0
Posts
36
Reactions
5
Resources
0
ufw?
 

RileyN

Net Sys Admin | AstroVPN CEO
Premium
Feedback score
3
Posts
350
Reactions
193
Resources
0
Yeah, everyone be like "I'll help you" and in the end they want big money for helping. "This may help but.. it may cost and not cheap at all" - not antiddos but some configuration by a guy that won't help lol
Add me on Discord.
 

Mark

System Admin
Supreme
Feedback score
16
Posts
80
Reactions
18
Resources
0
Yeah, everyone be like "I'll help you" and in the end they want big money for helping. "This may help but.. it may cost and not cheap at all" - not antiddos but some configuration by a guy that won't help lol
Gimmi a message on discord @Mark#8901 if you are still looking,
 

inferno

Supreme
Feedback score
15
Posts
830
Reactions
310
Resources
2
If you're sure it's a DDoS attack, buy a new machine so you get a new backend and get TCPShield
or just buy a different ip lol?[DOUBLEPOST=1612341567][/DOUBLEPOST]try this:

ufw allow (your dedi port)
ufw allow 80
ufw allow 443
ufw allow 25565
ufw default deny

Just a pretty basic setup until you get a sys admin
 
Last edited:

Mikey326

Feedback score
0
Posts
1
Reactions
1
Resources
0
Sup mate,

after reading all this bulls***t I am willing to help you. First things first: NEVER pay money for s**t like this. NEVER. 99% of the ppl. trying to share their "knowledge" are some hobby technicians holding barely the knowledge on how to set up a Debian VM.

If you're trying to fend of a DDoS attack you first have to determine which protocol and ports are used. Then you have to evaluate:

- Are we talking about a DDoS attack simply generating traffic in order to f**k up your downlink (UDP -> NTP / DNS flood)?
- Are we talking about a DDoS attack generating high amounts of uplink and plugging up your connection limit (yes, every router has a connection limit / SYN Ack flood)
- Are we talking about an application specific DDoS attack (e.G. Bots joining your lobby server / hub)

Setting up a firewall on your host will only delay the attack. Most script kids have an ego problem. Thus meaning: they wont stop / be satisfied that easy. You can buy "booter" or "stess test" services for approx. 2 dollars. So you have to keep in mind: "Blocking" an IP asdress will only be a temporary measurement. Please use IPTables instead of UFW. (IPTables has (my personal oppinion) way more features to fend off an attack properly). If you need help doing that, contact me on Discord. We can works things out pretty fast, I just need some more details about your network.Discord -> M zu dem Ikey#5354

For permanent measures you should consider using a hoster with some backend capabilities to fend off an attack. 0[V]H is a good example. Please note: Using IPTables / a software firewall will cost you some CPU power. If you CPU is too weak to handle the mass of packets generated in a DDoS attack you wont notice any difference.

I can personally recommend: sapinet They are in the 0[V]H network, thus having a pretty good DDoS protection. Additionaly they have a 10GBit Uplink, you need some serious power to get this fat boy down.

I am using this host as my BungeeCord server. Connections can only be made between my BungeeCord and my game servers. The public only sees this IP address (Bungee is acting more or less as an reverse proxy). Do you already have a Bungee running?

Best wishes
Mikey
 
Last edited:
Status
This thread has been locked.
Top