LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-03-2012, 05:07 AM   #1
Achical
LQ Newbie
 
Registered: May 2012
Posts: 9

Rep: Reputation: Disabled
DDos attack?


hi guys

im a student in the area of security and i have few questions regarding
prevention

i would like to know how to identify DDos attacks? what is the best way to minimize the damages this attacks can cause?

there is any way to trace it back to the attacker?

thanks in advance
 
Old 11-03-2012, 06:01 AM   #2
ButterflyMelissa
Senior Member
 
Registered: Nov 2007
Location: Somewhere on my hard drive...
Distribution: Manjaro
Posts: 2,766
Blog Entries: 23

Rep: Reputation: 411Reputation: 411Reputation: 411Reputation: 411Reputation: 411
Hey there,

Okay, not that I want to help you with your homework, and I (we all, I gather) assume you and Miss Google have been close lately...here's some thoughts:

Quote:
i would like to know how to identify DDos attacks?
Look into the network activity, try to open iftop, identyfy what is comming in, what's looking to access the outside. What's the server you run? A mini platform with, say, some 100 users? Then, what's the historical load per timeslice, say load per hour, or hits per hour. What is being asked? pages that dont exist? That's a clue...
Look into the amount of IP addresses as well, if some address keeps banging the door asking for some stuf that's not there, either it's a doofball with wrong of severely outdated bookmarks, some very outdated page points to stuff you dont host (anymore) or...that's an attacker...

Quote:
what is the best way to minimize the damages this attacks can cause?
update the system and keep it updated. Once out there, there's no way in hell you're gonna be able to prevent this. Unless you're hosting something nobody gives a wank about...then, getting no hits at all should be your worry instead...

Quote:
there is any way to trace it back to the attacker?
depends on the attacker, is it a moron that uses his home connection or a (semi) pro that uses a wireless conn some (other moron) user left unguarded, or a college campus WIFI conn. if (s)he is somewhat blessed with brains of sorts, there will be these hops, and anonymisers along the way, so, yea', this could be a chalenge, but hey, you're a student, clever enuff to figure out a clever way to bypass that???

By the way, some of the time, it's students that try out some stuff they learned, so, meet the crowd

Thor
 
Old 11-03-2012, 06:07 AM   #3
Achical
LQ Newbie
 
Registered: May 2012
Posts: 9

Original Poster
Rep: Reputation: Disabled
Thanks Thor i get you point and i believe i have a starting point here
Research more.

Thanks for you time
 
Old 11-03-2012, 06:10 AM   #4
ButterflyMelissa
Senior Member
 
Registered: Nov 2007
Location: Somewhere on my hard drive...
Distribution: Manjaro
Posts: 2,766
Blog Entries: 23

Rep: Reputation: 411Reputation: 411Reputation: 411Reputation: 411Reputation: 411
Quote:
Thanks Thor i get you point and i believe i have a starting point here
No sweat, glad to give a nudge...and, ask ANYTHIME. If you dont, you'll never get answers, this is what makes us humans so cool (sometimes)

Keep the system updated, that's your better defence...

Good luck with your studies

THor
 
Old 11-03-2012, 10:54 AM   #5
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
Quote:
Originally Posted by Achical View Post
...i would like to know how to identify DDos attacks? ...
Preventing DDoS Attacks
has some good tips/guidelines.
 
1 members found this post helpful.
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
DDOS attack help me dheeraj4uuu Linux - Security 9 05-31-2009 03:07 PM
DDOS Attack studiofos Linux - Security 3 09-12-2006 03:42 AM
DDOS attack in BIND9 inaki Linux - Security 1 08-07-2006 01:46 AM
DDOS attack WebProblem GNU Linux - Security 15 02-09-2005 09:28 PM
ddos attack ashis Linux - Security 1 06-14-2001 02:31 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 11:36 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration