Author Topic: Integrated Server DDoS Defense  (Read 1410 times)

Note: I'm not too familiar with the inner workings of the internet, so I don't know if this is even possible.

I was thinking that maybe in the next version of Blockland you could make it so servers have a firewall or something to stop a DDoS attack. And because many people would have no idea how to identify or stop said DDoS, maybe make it automatic, ex. turn on the firewall after a certain number of packets begins coming in.

It'd definitely be nice for people that don't use hosts and also incredibly useful. Maybe even give the forums some form of protection (even though many of us would probably love to watch it burn.)


this would be a bit impractical

It'd definitely be nice for people that don't use hosts and also incredibly useful. Maybe even give the forums some form of protection (even though many of us would probably love to watch it burn.)
GET BANNED FOR THAT BURNED PART
The Blockland Forums uses CloudFlare, it tries to keep the forums up and running even right after its DDoSed.

There's nothing you can do in game that can block DDoS attacks
Even blocking the IP in your router won't help at all

So can you atleast figure out who is doing the DDoS and get their IP, and send the FBI after them (assuming they aren't using a proxy)?

It's not that easy
If the person behind the DoS attack actually knows what they're doing, it's much more than "oh let's just put your IP in this program I downloaded and run it on my home computer"
There's multiple types of DoS attacks, most use spoofed sender addresses, some are hard to distinguish from legitimate connections
And in the case of a DDoS attack, you often have a botnet (multiple computers infected with malware) and the bot master says "ok guys go attack this guy for me" and if you trace that IP back all you find is someone who's only guilty of not knowing how to secure their computer

So can you atleast figure out who is doing the DDoS and get their IP, and send the FBI after them (assuming they aren't using a proxy)?

the FBI is too busy to go after someone ddosing a server on a children's game.

It's not that easy
If the person behind the DoS attack actually knows what they're doing, it's much more than "oh let's just put your IP in this program I downloaded and run it on my home computer"
There's multiple types of DoS attacks, most use spoofed sender addresses, some are hard to distinguish from legitimate connections
And in the case of a DDoS attack, you often have a botnet (multiple computers infected with malware) and the bot master says "ok guys go attack this guy for me" and if you trace that IP back all you find is someone who's only guilty of not knowing how to secure their computer
Listen to this guy. Hes right

So can you atleast figure out who is doing the DDoS and get their IP, and send the FBI after them (assuming they aren't using a proxy)?
you should do some research on what a DDoS attack is
Quote from: Wikipedia
distributed denial-of-service (DDoS)

As clarification, distributed denial-of-service attacks are sent by two or more people, or bots, and denial-of-service attacks are sent by one person or system.
if somebody is using a DDoS attack, they probably wouldn't be attacking from their own computer, but instead from many other computers
in this way they shouldn't be giving up their IP - only the IPs of the bots