Help - Search - Members - Calendar
Full Version: Some FloodGuard questions
The Planet Forums > Security > DoS & D-DoS Mitigation
Serhat
Hello, I have some basic questions:

1) If I sign up for a new server, I can choose to have 5, 13, etc addresses -- yet when I enable the 'FloodGuard' options, I can select 4, 8, 16, etc ips to protect. Does this mean that unless I order "too much protection", there will be ips left unprotected?

2) How can I get the ips for my server to be a little "diverse"? I like the idea of having at least 1-2 "secret ips" (i.e. out of the range) to access the server even if my standard ones are nullrouted. Does it make a difference to FloodGuard whether or not the ips to protect are in sequence?

3) Apparently FloodGuard protects against bandwidth exhaustion attacks. Let's say theoretically that someone is hitting me with 20mbit SYN flood on my 10mbit port - there IS a good chance that I won't notice anything, right? Does the same apply to my traffic count (and bill?)

4) Is there a good way to keep track of the status of FloodGuard and find out what's going on (i.e. was I attacked and with what?) ?

Thanks for any answers!

Regards,

Serhat
daveman
Floodguard protects 3 less IPs than you purchase it for. These three are used for the gateway and such. Thus select 8 to protect 5 actual IPs.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.