Afrihost - Pure Fibre Feedback Thread

Status
Not open for further replies.
Dstv now wont even load menus. Netflix and Youtube show menus but nothing wants to play. I really need to stream something so I can doze off. It was working okayish until shortly after 10.

giphy.gif


Spotify works fine if you must leave something playing while you sleep...
 
Morning everyone,

Our team worked through the night with Liquid Telecom, seems like the attacks came in waves.

Seems like we're seeing new activity this morning, and we're already seeing international traffic take a hit. We have everyone ready to deal with this as best we can from Liquid and our network team.

Hopefully we'll keep the impact to a minimum :(
 
Anything happened to user accounts? Trying to log into clientzone, I get bad credentials.

731247
 
Is traffic being re-routed to mitigate this attack? Besides the packet loss, latencies to EU have skyrocketed.
 
Is traffic being re-routed to mitigate this attack? Besides the packet loss, latencies to EU have skyrocketed.

Rerouting traffic doesn't address the cause of the issue, which is the flood of incoming requests from spoofed IP's which are essentially creating massive bottlenecks in the network being able to properly route traffic.

Our focus is managing that flood of traffic, which will then allow normal requests to be processed and handled.

International latencies are most affected as the bulk of the attack seems to be directed at our international routing partner - Liquid Telecoms. Local latencies seem to be better.
 
I wish these kids will just go play outside with their hotwheels cars in the sand, or barbie dolls & doll houses and stop trying to bomb other countries with their home brew scripts....

tsk tsk ....
 
I wish these kids will just go play outside with their hotwheels cars in the sand, or barbie dolls & doll houses and stop trying to bomb other countries with their home brew scripts....

tsk tsk ....

Sadly, they can cause a lot of destruction and stress, so best would be to hope that they eventually give up and move on. We definitely don't want to antagonise them in any way.
 
Sadly, they can cause a lot of destruction and stress, so best would be to hope that they eventually give up and move on. We definitely don't want to antagonise them in any way.

I /palmfaced when I saw the press release by Liquid Telecom saying they had successfully mitigated the DDoS. That's like a person in a horror movie that hears a strange sound in a dark room and goes in to investigate.
 
Sadly, they can cause a lot of destruction and stress, so best would be to hope that they eventually give up and move on. We definitely don't want to antagonise them in any way.
and to think of it they don't really get anything out of it...
 
and to think of it they don't really get anything out of it...
Its bragging rights that's all....however - aren't most DDos attacks via zombie/botnet machines anyway ?
 
Its bragging rights that's all....however - aren't most DDos attacks via zombie/botnet machines anyway ?
Yes most DDos happens with Botnets, they must have been over millions of hits per second on that network to cripple 3 ISP's and put them to their knees. Why don't AH/Liquid Telecoms at least do vulnerability scanning on their networks to mitigate risks and slow them down, It's expensive but worth every penny.

I know some Cyber Sec companies charge like R75 per IP scan but it works on a scale basis.
 
Yes most DDos happens with Botnets, they must have been over millions of hits per second on that network to cripple 3 ISP's and put them to their knees. Why don't AH/Liquid Telecoms at least do vulnerability scanning on their networks to mitigate risks and slow them down, It's expensive but worth every penny.

I know some Cyber Sec companies charge like R75 per IP scan but it works on a scale basis.

I know Liquid have invested a lot in security. From my little experience, it's impressive that they've managed to keep services going, even though they are not at peak performance. I am pretty confident that are doing everything that can be done - their team is very experienced.
 
I know Liquid have invested a lot in security. From my little experience, it's impressive that they've managed to keep services going, even though they are not at peak performance. I am pretty confident that are doing everything that can be done - their team is very experienced.
Agree with you on that bud, But let us be honest here, the only way this DDos could have been successful was because of the lack of mitigating risks and so many open ports on their network, that is why it was so successful. I mean even SNMP v2 can be hacked on switches with close eyes lols. Let's not even get started about the mac flooding that must have happened on these networks this weekend...
 
Agree with you on that bud, But let us be honest here, the only way this DDos could have been successful was because of the lack of mitigating risks and so many open ports on their network, that is why it was so successful. I mean even SNMP v2 can be hacked on switches with close eyes lols. Let's not even get started about the mac flooding that must have happened on these networks this weekend...

You're talking a little above my pay grade, I'm afraid :(

I am pretty sure they take every precaution, but I wouldn't know the details on what and how they plan for these issues. I am sure they would be reluctant to go into that in a public forum, as it ultimately gives attackers intel they can use :(
 
Agree with you on that bud, But let us be honest here, the only way this DDos could have been successful was because of the lack of mitigating risks and so many open ports on their network, that is why it was so successful. I mean even SNMP v2 can be hacked on switches with close eyes lols. Let's not even get started about the mac flooding that must have happened on these networks this weekend...
Let me give a bit of perspective. I joined Afrihost at the beginning of the month (or rather the middle once we sorted out some Openserve issues). The reason I moved ISPs was because my previous provider had been hammered for close on a month by DDoS attacks - similar pattern, waves that tended to converge during heavy usage periods, probably because the existing traffic made it an easier target.

My previous provider was smaller than Afrihost, and they couldn't manage to keep international up at all during the attacks. They did everything they could, but it's a resource-heavy problem. In the end I left because there was no end in sight, but I don't blame them for it.

Liquid telecom is a larger player, with attendant resources available. You can see that in the fact that they're managing to keep things mostly rolling. Yes, it's tremendously frustrating for those of us who use latency-dependent applications like gaming, but we're at least not seeing total failure since the first wave.

tl;dr: it could be much worse, and I think you should re-evaluate the degree of responsibility that you're assigning on the provider side here.
 
Status
Not open for further replies.
Top
Sign up to the MyBroadband newsletter
X