Re: [AFMUG] DIY DDoS box with iptables?

2017-07-19 Thread Dennis Burgess
Depending on what you are trying to do, MT can do that, it's just a matter of creating the firewall rules. :) -Original Message- From: Af [mailto:af-boun...@afmug.com] On Behalf Of Paul Stewart Sent: Tuesday, July 18, 2017 8:27 PM To: af@afmug.com Subject: Re: [AFMUG] DIY DDoS box

Re: [AFMUG] DIY DDoS box with iptables?

2017-07-18 Thread Paul Stewart
I guess it depends on what you are trying to accomplish here …. are you looking to scrub the traffic clean or just block dirty traffic? How will you determine what traffic is dirty and apply rules on the fly? Sorry - many questions come to mind here and don’t mean to sound negative but it

Re: [AFMUG] DIY DDoS box with iptables?

2017-07-18 Thread Mike Hammett
t: Tuesday, July 18, 2017 5:21:33 PM Subject: [AFMUG] DIY DDoS box with iptables? What is the feasibility of building a DDoS protection box out of a bare Linux server running a dual-10G/40G NIC inline with iptables handling junk traffic, and then a third eth for management? Seems like the 10

Re: [AFMUG] DIY DDoS box with iptables?

2017-07-18 Thread Josh Baird
Sounds like a job for your providers. On Tue, Jul 18, 2017 at 3:21 PM, Dev wrote: > What is the feasibility of building a DDoS protection box out of a bare > Linux server running a dual-10G/40G NIC inline with iptables handling junk > traffic, and then a third eth for

[AFMUG] DIY DDoS box with iptables?

2017-07-18 Thread Dev
What is the feasibility of building a DDoS protection box out of a bare Linux server running a dual-10G/40G NIC inline with iptables handling junk traffic, and then a third eth for management? Seems like the 10G/40G card could help scrub traffic before it hits your core? Has anyone built one?