Community discussions

MikroTik App
 
User avatar
mercurial
just joined
Topic Author
Posts: 7
Joined: Wed Aug 25, 2010 6:13 pm
Location: san nicolas , buenos aires Argentina

victims of syn flood attacks

Fri Aug 27, 2010 8:20 pm

hello all, I have a problem in one of my public ips are victims of syn flood attacks. I have a 2500MHz Celeron PC, 512MB RAM, ros 4.11. what kind of rules I can add to "/ ip firewall filter." help me
 
blake
Member
Member
Posts: 426
Joined: Mon May 31, 2010 10:46 pm
Location: Arizona

Re: victims of syn flood attacks

Fri Aug 27, 2010 8:38 pm

 
User avatar
mercurial
just joined
Topic Author
Posts: 7
Joined: Wed Aug 25, 2010 6:13 pm
Location: san nicolas , buenos aires Argentina

Re: victims of syn flood attacks

Fri Aug 27, 2010 10:31 pm

I also found the scene where flooded with packets with the ACK bit, the router responds with a RST. is an issue that consumes bandwidth, tcp-syncookies is not a solution. any idea to solve
 
fewi
Forum Guru
Forum Guru
Posts: 7717
Joined: Tue Aug 11, 2009 3:19 am

Re: victims of syn flood attacks

Fri Aug 27, 2010 10:32 pm

If your problem is bandwidth consumption the ONLY solution is to have someone upstream block the packets. The link blake posted to the Mikrotik wiki contains pretty much the things you can do on your router, but of course nothing can solve the issue of an uplink being saturated by DoS attacks other than your upstream not putting the packets on the wire in the first place.

Who is online

Users browsing this forum: billyerasmus101, complexxL9 and 224 guests