LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-30-2011, 12:55 AM   #1
anishkumarv
Member
 
Registered: Feb 2010
Location: chennai - India
Distribution: centos
Posts: 294

Rep: Reputation: 10
What are the Security Methods We can Follow to avoid DOS attacks..!!


Hi,

Thanks in Advance!! :-)


What are the Security Methods We can follow to avoid DOS attacks,

1. Using Iptables to block the ICMP protocol means ??

Is this a right way to avoid this attack?? Guide me to solve this thread
 
Old 07-30-2011, 01:42 AM   #2
John VV
LQ Muse
 
Registered: Aug 2005
Location: A2 area Mi.
Posts: 17,624

Rep: Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651Reputation: 2651
none,if you get hit by 100,000 different ip addresses .
install "fail2ban" if only from 6 or so ip addresses .
 
Old 07-30-2011, 02:16 AM   #3
anishkumarv
Member
 
Registered: Feb 2010
Location: chennai - India
Distribution: centos
Posts: 294

Original Poster
Rep: Reputation: 10
Quote:
Originally Posted by John VV View Post
none,if you get hit by 100,000 different ip addresses .
Thanks John there is no possibility ?? to avoid 100,000 different IP addresses.

What about Anti-dos feature in Advanced Policy Firewall, Is this Secure, just now only i find this in google,

Last edited by anishkumarv; 07-30-2011 at 02:44 AM.
 
Old 07-30-2011, 10:02 AM   #4
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
There's different kinds of DoS attacks you can use your firewall and/or TCP/IP stack features to defend against (you'll need to be specific as to which attack you're referring to if you want help with countermeasures), but if you're actually talking about a DDoS (distributed denial of service) then there really isn't anything you can do in most cases. An exception would be a non-bandwidth-starving DDoS in which interaction between your servers and the attack hosts is required, as you may be able to develop a fingerprint/signature to isolate hostile traffic. Still, if the DDoS is saturating your link and doesn't require interaction (or is sneaky enough that you can't filter attack traffic without massive collateral damage), you're pretty much dead in the water without the help of your ISP.

This has been discussed on numerous occasions here on LQSEC (a simple search should get you some relevant threads).

Last edited by win32sux; 07-30-2011 at 10:05 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
How to detect DOS attacks? entz Linux - Security 4 07-01-2009 10:52 AM
how to avoid writing every methods for a listener in a java program ?? alred Programming 2 05-24-2006 10:41 PM
Preventing DOS Attacks? clubar Linux - Security 2 09-22-2004 09:54 PM
Newbie wanting to avoid BOFH attacks!! arobic LinuxQuestions.org Member Intro 0 08-06-2003 11:49 AM
DoS Attacks prac2 Linux - Networking 1 10-12-2001 06:16 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:12 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration