Reply to post:

What evil lurks within the data centre, and why is it DDoS-ing the ever-loving pants off us?

Anonymous Coward
Anonymous Coward

That fix seems a bit extravagant.

I think a quicker and easier solution would be to have the router or the webserver's iptables drop all traffic except for a manageable amount, and replace the code that checked for an update with a static document saying "yes, this fixed version here: " so apache* could serve it instantly.

Then expand the allowed traffic a block at a time until everything is allowed.

Also fixing the apache config to not allow too many simultaneous connections would help.

* or whatever

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon