Urban Terror Forums: DRDoS - Urban Terror Forums

Jump to content

 Login | Register 
Advertisement
  • (27 Pages)
  • +
  • « First
  • 6
  • 7
  • 8
  • 9
  • 10
  • Last »
  • You cannot start a new topic
  • This topic is locked

DRDoS Rate Topic: ***** 1 Votes

Server used as reflector fro DRDoS

#71 User is offline   Nitro Icon

  •   QA member   
  • Account: nitro
  • Main tag: |P|
  • Country:
  • Joined: 15-March 10
  • Posts: 1,133

Posted 11 January 2012 - 10:55 PM

View PostCreation, on 11 January 2012 - 03:05 PM, said:

Personally i can only hope for a patch to be released really soon because i`m sure that not all server admins where able to use the workaround found on another topic.



patch? the executables were patched and released before the work around was completed


scroll down to "update your server" >> http://www.urbanterr...up-guide-tools/

This post has been edited by nitro: 11 January 2012 - 10:56 PM

Lian Li pc-o11dw Der 8auer Edition · Gigabyte x570 Aorus Xtreme · AMD Ryzen 9 5950x 16-Core
32GB DDR4 3800MHz CL16 · 2x 1TB Samsung NVMe RAID 0 · 16GB Radeon RX 6900XT Liquid Cooled

#72 User is offline   rfx Icon

  • Account: rfx
  • Country:
  • Joined: 01-March 10
  • Posts: 576

Posted 11 January 2012 - 11:21 PM

View Postnitro, on 11 January 2012 - 10:55 PM, said:

patch? the executables were patched and released before the work around was completed

scroll down to "update your server" >> http://www.urbanterr...up-guide-tools/

Sorry, but that's hardly a news post at the front page.

As of today, the server binaries you get from the official download page ( http://www.urbanterror.info/downloads/ ) are exploitable as hell (I derived that from their compile stamp: somewhen in 2007 (!) ). I've no words for that.

Let me quote that text you refer to (and, please do not consider this is a criticism to you):

Quote

These patches are unofficial and provided by the community, these are not supported by frozen sands. Use at your own risk!

Wt...?

This completely negates any kind of trust a server owner would need to put into it.

Reconsidering the rcon attack, this one is kind of minor in regards to monetary problems it can cause. It's still annoying.

But the DrDoS attack can create amounts of traffic so easily it's almost unprecedented. I had an account of over 200GB traffic just within merely 2 1/2 days; luckily I was called by phone quickly enough to take countermeasures (first one was to shut down servers the second I was informed about the problem).

IMHO there should be a dedicated officially supported communication channel for server owner. That's the least thing I'd consider professional.

#73 User is offline   Rambetter Icon

  •   community dev   
  • Account: rambetter
  • Joined: 28-February 10
  • Posts: 1,140

Posted 12 January 2012 - 12:12 AM

Still waiting for one of these "community members" to join Frozen Sand so that server fixes in 4.1 would become "official". *nudge* *nudge*

#74 User is offline   Nitro Icon

  •   QA member   
  • Account: nitro
  • Main tag: |P|
  • Country:
  • Joined: 15-March 10
  • Posts: 1,133

Posted 12 January 2012 - 02:36 AM

I see what you mean rfx, but as of right now I don't think frozen sands has anyone on the dedicated server to make these patches, Its a position they'll need to fill as it is definitely a requirement, Its bad enough with game experience on home servers, but what happens when dedicated hoster's pull their hardware and cut their loses due to unnecessary expenses because the server code isn't kept upto scratch (well not unless you follow rambetters svn trunk and are willing to trust him as an unofficial patcher)

to make things worse game servers on home hardware will be even worse with these attacks as the amount of bandwidth generated can completely knock them out.

I've always wondered why frozen sands hasn't considered someone like rambetter for their team as he is clearly a talented and dedicated contributer to this gaming community. It would be a shame to lose someone like that in this communnity, and certainly he is one of the few people in this community that has been there for us when the well known exploits have been targeted. I cannot imagine the position we would be in right now if it wasn't for dedicated people like rambetter.
Lian Li pc-o11dw Der 8auer Edition · Gigabyte x570 Aorus Xtreme · AMD Ryzen 9 5950x 16-Core
32GB DDR4 3800MHz CL16 · 2x 1TB Samsung NVMe RAID 0 · 16GB Radeon RX 6900XT Liquid Cooled

#75 User is offline   rfx Icon

  • Account: rfx
  • Country:
  • Joined: 01-March 10
  • Posts: 576

Posted 12 January 2012 - 07:57 AM

Thanks nitro (&Rambetter), I couldn't word it better.

Really, no one of the team being able to provide current binaries is a serious issue. I don't want to try to imagine how this turns out of with the future of the (closed source due direct id license?) HD variant, when suddenly no one is there anymore to provide updates to the binaries ...


#77 User is offline   ItsMe Icon

  • Account: itsme
  • Main tag: bc`
  • Joined: 28-February 10
  • Posts: 76

Posted 12 January 2012 - 05:12 PM

View PostRaideR, on 12 January 2012 - 09:23 AM, said:

This thread has methods contained within for "techys" to protect for the short terms. What i'm trying to do is look to the medium to long term security protections of the server binaries that we list as official!


Ty RaideR for saying that that clearly, thats exact my Point of view what I've tried to make clear in my Discussion with nitro.

Quote

Remember this effects NOT just Urban Terror but anything on the idtech3 engine or uses similar UDP based connective methods.


As I said in my Post in this Thread: here, the Problem is fixed by ioquake since r1762 (4th-Jan-2010)

Quote

While I 100% understand peoples frustration here, may i remind you i don't tolerate rudeness to either myself OR the team. We are doing our best here.

Your Forum -> Your Rules


PS.
The Binarys I use are compiled from the ioquake trunk since End of December and even after dropping my shields [read iptables] the problem seems gone.
I did a few changes again to them in January thats why the Version looks like:

-> version\(bubbleclub)-ioq3 1.36_SVN2214M linux-x86_64 Jan 6 2012


#79 User is offline   3spades Icon

  •   verified donor   
    Support Guy
  • Account: 3spades
  • Country:
  • Joined: 28-February 10
  • Posts: 389

Posted 14 January 2012 - 05:25 PM

Using Rambetter's build and it blocks all gametracker.com requests so my servers are dead to them. I would recommend testing the official fix against that so all the urbanterror servers don't drop off of their tracker.

Edit: seems I had to manually test it with their interface and its not dead anymore. Guess it was just coincidence.

This post has been edited by 3spades: 14 January 2012 - 06:31 PM

urt.voxel.net :: Ruining your URT experience [2] weapons limited servers at a time.
Kevlar in CTF is like sex with a condom. Sure you get the general feel of things, but everyone would enjoy the game without it.

#80 User is offline   Nitro Icon

  •   QA member   
  • Account: nitro
  • Main tag: |P|
  • Country:
  • Joined: 15-March 10
  • Posts: 1,133

Posted 14 January 2012 - 06:52 PM

View Post3spades, on 14 January 2012 - 05:25 PM, said:

Using Rambetter's build and it blocks all gametracker.com requests so my servers are dead to them. I would recommend testing the official fix against that so all the urbanterror servers don't drop off of their tracker.

Edit: seems I had to manually test it with their interface and its not dead anymore. Guess it was just coincidence.



This can't be possible because game tracker queries the master servers not your server directly. For this to be blocked your server would have to be blocked on the master server also. Have you tried the firewall rules? Perhaps one of them isn't working correctly.
Lian Li pc-o11dw Der 8auer Edition · Gigabyte x570 Aorus Xtreme · AMD Ryzen 9 5950x 16-Core
32GB DDR4 3800MHz CL16 · 2x 1TB Samsung NVMe RAID 0 · 16GB Radeon RX 6900XT Liquid Cooled

  • (27 Pages)
  • +
  • « First
  • 6
  • 7
  • 8
  • 9
  • 10
  • Last »
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

Sponsored link
https://www.frozensand.com/


Copyright © 1999-2024 Frozensand Games Limited  |  All rights reserved  |  Urban Terror™ and FrozenSand™ are trademarks of Frozensand Games Limited

Frozensand Games is a Limited company registered in England and Wales. Company Reg No: 10343942