| | (canceled)
|
|
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Adapted you say, could this be the BORG !!! (:-)) (21 years ago, 25-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Todd, pardon my ignorance, but is this a DoS aimed at Lugnet specifically, or a more generic NNTP attack? who would want to pester Lugnet? Chris (21 years ago, 25-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Cool. One person posting over on BL suggested that the attack might be a generic SWEN attack looking to gather email addresses for other neferious purposes. One site[1] has chossen to move the NNTP port to 1119 temporarily until such time as (...) (21 years ago, 25-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Yup, started doing that Monday evening. It worked quite well for a while, until the author of the attacks discovered the tarpit behavior and adapted. --Todd (21 years ago, 24-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Just a passing idea.. setting up a tarpit to mimmic the NNTP server, then sending the misbehaving traffic there rather than blocking it. That might slow down the offending servers to such a point that they back off. Ray (21 years ago, 24-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) I suggest it as a temporary measure only until this problem were resolved other ways. Think of it as a detour while the real road is repaired. I have no idea if it's technically even feasible, or would solve the problem (from the outside (...) (21 years ago, 24-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
"Larry Pieniazek" <lpieniazek@mercator.com> wrote in message news:HLp90M.191p@lugnet.com... [ ... snipped .. ] (...) worse, or (...) Please don't do this. Turning off NNTP would dramatically reduce my (and I suspect many others) participation in (...) (21 years ago, 24-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Any chance that turning off NNTP (except as presented by the web or mail interfaces, but not accepting stuff from the outside world) would work? It would mean that nntp users would be cut off completely, but is that worse, or better, than (...) (21 years ago, 24-Sep-03, to lugnet.admin.nntp)
|
|
| | Re: NNTP is working (mostly)
|
|
(...) Actually, the site wasn't down -- only the dynamic portions of the webserver were shut off (voluntarily and automatically by the system) to help keep the load average down. The NNTP attacks are still coming and the total number of compromised (...) (21 years ago, 23-Sep-03, to lugnet.admin.general, lugnet.admin.nntp)
|