5 ms·
As far as DDOS protection goes, I'd like some tips there. Also, a question - if I have a 1Gbps home connection am I strictly screwed if someone is sending a lit
by explaingarlic 5y ago
As far as DDOS protection goes, I'd like some tips there. Also, a question - if I have a 1Gbps home connection am I strictly screwed if someone is sending a little more than 1Gbps to me UDP-wise? It's the kind of question that seems simple but I've never been able to make my own simple answer.
- killingtime74 5y agoAre you opposed to using Cloudflare or other DDOS providers? I’m not sure what can be done on a small budget
- explaingarlic 5y agoI meant more for the usecase of having a public endpoint. I don't like the idea that my only option is to hide my endpoint as the origin of a CDN in order to prevent it from being saturated with traffic by a digital ocean droplet.
- aaaaaaaaata 5y agoTheoretical max upload is always just below the other side's max download.
- explaingarlic 5y agoWhat do you mean? Plenty of people are on 30Mbps connections and I have more than triple that in upload.
- water8 5y agoYour only option is block the IP addresses but if its a large botnet or a reflected attack it may not be possible
- BenjiWiebe 5y agoBlocking the IP at your router won't help if your router's upstream is saturated...
- water8 5y agoWhy are you saturating your own link? You control your upstream unless you've already been breached or there is a vulnerability in your router firmware
- warrenm 5y agoI don't think you're using "upstream" the way parent does (and the way everyone else I know uses it) You only control what you're uploading You have no control of what is upstream of the router (ie your carrier and beyond), since you're downstream of that
- explaingarlic 5y agoIf someone is sending me 1Gbps at layer 3, doesn't that just saturate my link to my ISP (and therefore the open internet) anyway? Regardless of whether I block it with my router?