Getting DDoS’d and too many SYN packets are driving the load up on your Apache service? Here’s something that can help out a little with that. It will keep your server’s load from spiking, but it can’t help with the total traffic. However, with this and the Cisco Guard, it should get you through it.
Flooding in SYN and IP Tables
Copy and paste everything between the dashes and save it as a file. Call it flood.sh, and then execute the file with “sh flood.sh” and iptables will start filtering out bad packets. (Note: If you are using a different NIC than eth0, replace that in the script with the proper primary interface, else this won’t work at all.)





Comments Of Us