Jump to content
Калькуляторы

ddos аттака, непонятно

Возник небольшой вопрос, уже второй раз замечаем ddos в нашу сторону:

14:39:07.412295 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 48.136.4.190.14 > 178.2.15.60.80: Flags [s], seq 520508754, win 16484, length 0
14:39:07.412296 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 144.21.118.55.10 > 178.2.15.60.80: Flags [s], seq 2568969609, win 64240, length 0
14:39:07.412297 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 144.21.118.55.10 > 178.2.15.60.80: Flags [s], seq 2568969610, win 16484, length 0
14:39:07.412299 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 48.136.4.190.14 > 178.2.15.60.80: Flags [s], seq 520508755, win 64240, length 0
14:39:07.412301 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 67.51.27.2.1 > 178.2.15.60.80: Flags [s], seq 2705859438, win 64240, length 0
14:39:07.412302 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 67.51.27.2.1 > 178.2.15.60.80: Flags [s], seq 2705859439, win 16384, length 0
14:39:07.412302 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 191.83.38.176.3 > 178.2.15.60.80: Flags [s], seq 2998818729, win 16384, length 0
14:39:07.412303 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 184.110.205.196.10 > 178.2.15.60.80: Flags [s], seq 3585633964, win 16384, length 0
14:39:07.412304 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 184.110.205.196.10 > 178.2.15.60.80: Flags [s], seq 3585633965, win 16484, length 0
14:39:07.412305 00:0a:f3:31:98:40 > 64:87:88:59:eb:1b, ethertype 802.1Q (0x8100), length 64: vlan 121, p 0, ethertype IPv4, 191.83.38.176.3 > 178.2.15.60.80: Flags [s], seq 2998818730, win 16384, length 0

Вот думаем, как бы в ядре с этим поборотся, приходит на конечный сервер, пока фаером зафильтровали src port range 1-1024, но как-то не приятно

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.