29.08.2017, 09:04
Quote:
I believe CentOS 6.x+ started enabling SYN cookies by default. This is a fresh CentOS 7 minimal install and it has it on already:
PHP код:
|
Default sysctl.conf:
Код:
net.ipv4.tcp_syncookies=1
Im working around with all possible things to mitigate this, i have tested the firewall rules posted here - it works but after few time the server connection is timed out, CPU usage varies between 100 and 102%(wtf?), and
the same result i have with the plugin posted by Ubi.
Im reading and testing around Suricata, BindGuard, Nftables(Debian 9 new Firewall), im not a security expert,
but perhaps there is a solution?
I will append here my sysctl for any study purposes.
I'm still under attack.
Best Regards