Urban Terror Forums: DRDoS - Urban Terror Forums

Jump to content

 Login | Register 
Advertisement
  • (27 Pages)
  • +
  • « First
  • 19
  • 20
  • 21
  • 22
  • 23
  • Last »
  • You cannot start a new topic
  • This topic is locked

DRDoS Rate Topic: ***** 1 Votes

Server used as reflector fro DRDoS

#201 User is offline   ipwnn00bs Icon

  • Account: ipwnn00bs
  • Joined: 06-June 10
  • Posts: 23

Posted 09 March 2012 - 06:34 PM

Hehe, but if your solution can be bypassed... then having it as a secret won't help, lol. :S

Hmmm, just to tell you, today I received more complains from a dumb admin (another u_u ) via my hosting company :S

Waiting for the shelushioooon!

This post has been edited by ipwnn00bs: 09 March 2012 - 06:35 PM


#202 User is offline   Nitro Icon

  •   QA member   
  • Account: nitro
  • Main tag: |P|
  • Country:
  • Joined: 15-March 10
  • Posts: 1,133

Posted 09 March 2012 - 06:57 PM

ok I have pm'd the solution to you please read it and if you agree with me on it, then please let me know but for the love of god dont reveal it otherwise we are back in the sh*t :/
Lian Li pc-o11dw Der 8auer Edition · Gigabyte x570 Aorus Xtreme · AMD Ryzen 9 5950x 16-Core
32GB DDR4 3800MHz CL16 · 2x 1TB Samsung NVMe RAID 0 · 16GB Radeon RX 6900XT Liquid Cooled

#203 User is offline   ipwnn00bs Icon

  • Account: ipwnn00bs
  • Joined: 06-June 10
  • Posts: 23

Posted 09 March 2012 - 06:59 PM

View PostNITRO, on 09 March 2012 - 06:57 PM, said:

ok I have pm'd the solution to you please read it and if you agree with me on it, then please let me know but for the love of god dont reveal it otherwise we are back in the sh*t :/


Don't worry =)

Reading and answering you...

#204 User is offline   Rambetter Icon

  •   community dev   
  • Account: rambetter
  • Joined: 28-February 10
  • Posts: 1,140

Posted 09 March 2012 - 07:28 PM

NITRO can you PM me what the frick you're talking about?
I'm confused.

#205 User is offline   Rambetter Icon

  •   community dev   
  • Account: rambetter
  • Joined: 28-February 10
  • Posts: 1,140

Posted 09 March 2012 - 07:31 PM

View Postjahtariii, on 09 March 2012 - 02:18 PM, said:

Hey, thx for your fix!!!

I did some ruff calculations... :) (I hope they are right, hehe)

Your fist fix limited the amount of traffic beeing send to a victim from a single server to 3 msgs per 2 sec. That means 180 msg in 2min from one server.
The latest fix now limits the nr. of msgs send to a victim to 3 msgs in 2min (if the flooder does not lower its sending rate).
This means that with the latest version/fix 98% less unnecessary traffic is beeing send.
-> Thats quite nice!!! :cool:



An attacker who understands the latest patch will be able to write an attack that lets the getstatus packets trickly in at a rate of 3 per 2 second period. Then they will be able to successfully project 1.5 getstatus responses per second without triggering the blocking code.

See, this is why there is no real solution to fix this problem other than to modify the Q3 protocol.

ipwnnoobs, don't try to write too much code for this reason.

This post has been edited by Rambetter: 09 March 2012 - 07:34 PM


bullet_loaderAdvertisement

#206 User is offline   ipwnn00bs Icon

  • Account: ipwnn00bs
  • Joined: 06-June 10
  • Posts: 23

Posted 09 March 2012 - 07:37 PM

Answered you NITRO

View PostRambetter, on 09 March 2012 - 07:31 PM, said:

An attacker who understands the latest patch will be able to write an attack that lets the getstatus packets trickly in at a rate of 3 per 2 second period. Then they will be able to successfully project 1.5 getstatus responses per second without triggering the blocking code.

See, this is why there is no real solution to fix this problem other than to modify the Q3 protocol.

ipwnnoobs, don't try to write too much code for this reason.


Yes I understand, since you already read it, I will edit my post :P

What do you think about my idea?

This post has been edited by ipwnn00bs: 09 March 2012 - 07:38 PM


#207 User is offline   kbar Icon

  • Account: kbar
  • Main tag: no|
  • Country:
  • Joined: 28-February 10
  • Posts: 239

Posted 09 March 2012 - 07:57 PM

http://www.altfire.c...php?news_id=586

I got linked this by a fellow quaker.

hopefully it helps?

#208 User is offline   ipwnn00bs Icon

  • Account: ipwnn00bs
  • Joined: 06-June 10
  • Posts: 23

Posted 09 March 2012 - 08:02 PM

Hey Kbar. Thanks

Yes, it helps, but isn't the best solution, since most gameservers aren't hosted in server with access to root accounts to do this.

Is the best way, via iptables, but due to that reason the only way is to block at the game level. In other words, I can do the iptables stuff, but most people and companies renting servers by slot won't do that.

This post has been edited by ipwnn00bs: 09 March 2012 - 08:18 PM


#209 User is offline   Rambetter Icon

  •   community dev   
  • Account: rambetter
  • Joined: 28-February 10
  • Posts: 1,140

Posted 09 March 2012 - 08:11 PM

In fact my latest patch is very similar in functionality to that iptalbes rule.

iptables is a cool way of doing it, too. Especially if you can't modify the server source code.

#210 User is offline   ipwnn00bs Icon

  • Account: ipwnn00bs
  • Joined: 06-June 10
  • Posts: 23

Posted 09 March 2012 - 08:21 PM

Ram, there is no way to change that 2 seconds threshold?

  • (27 Pages)
  • +
  • « First
  • 19
  • 20
  • 21
  • 22
  • 23
  • Last »
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  1. Facebook
Advertisement


Copyright © 1999-2024 Frozensand Games Limited  |  All rights reserved  |  Urban Terror™ and FrozenSand™ are trademarks of Frozensand Games Limited

Frozensand Games is a Limited company registered in England and Wales. Company Reg No: 10343942