SA-MP Forums Archive
Server Secure - Printable Version

+- SA-MP Forums Archive (https://sampforum.blast.hk)
+-- Forum: SA-MP Server (https://sampforum.blast.hk/forumdisplay.php?fid=6)
+--- Forum: Server Support (https://sampforum.blast.hk/forumdisplay.php?fid=19)
+--- Thread: Server Secure (/showthread.php?tid=635454)



Server Secure - Nin9r - 07.06.2017

Hello!

I want to know how to be sure if my server is secured or not. I do not know how, but somehow my server is under attack. I made a ticket to our host but they told us that we have already anti ddos protection.

Some hatters are flooding our server ( they told us ). For example... Everything is fine, we have 30-40 players.. Then, they are connecting on our server, make a /report and threaten us about it.. After 1-2 minutes, server gets stuck for serveral seconds, and, from 30-40 players we will remain 10-15 ( the rest will be disconnected ). PS: They can make it even if they are not connected on server.

I tried to use anti NPC flood, i use some cfgs in server.cfg to protect but it doesn't work anymore.

What type of flood is it? Any idea?
How can I stop them? Sorry for my bad english.


Re: Server Secure - Christofski - 08.06.2017

Check your logs, Add protections in place for connection request floods when attacks start try not to provoke these players either they will probably just initiate the attack, I have had attacks on my own server exactly like what you are posting, I have found the best method is to get your anticheat perfect, Im not a scripter but I can tell you from our experience we have had to use custom firewall etc and some server sided detections for trollers + an include that reads the server log for connection request floods that will add the ip connecting to iptables.

Alot of this is also from abusing vulnerabilities in your script or components that communicate with your Mysql. IT will also sometimes cause your vps etc cpu's to clock out and sometimes can cause your vps to turn off to avoid overheating/damage to the vps. (Thats what happens with OVH anyway). Sometimes the best method is to turn your server off completely and then turn it on again to revert the attack as restarting the server via /rcon gmx will not end the requests or loops lagging your network/server.

There is currently a vulnerability i have discovered within samp with these attacks in the last months mainly from Brazil ips


Re: Server Secure - xPhantom - 09.06.2017

It's a shame people still resort to doing attacks like these, do the logs indicate anything and what host are you using?


Re: Server Secure - CheezIt - 09.06.2017

This happens when you decide to create a server with no or too little knowledge about things.


Re: Server Secure - Christofski - 09.06.2017

Quote:
Originally Posted by CheezIt
Посмотреть сообщение
This happens when you decide to create a server with no or too little knowledge about things.
Sadly this can be true but don't let comments like this put you off running your server, this is an obstacle which can be overcome it just takes trouble shooting with someone who understands samp and the way it works and how to stop vulnerabilities.


Re: Server Secure - Matthew57 - 11.06.2017

If the player is attacking in game you can range ban him or use anti vps filescript so he won't able to connect your server