I'm being DDoS'd

CombatW0mb4t

Active Member
Joined
Mar 25, 2010
Messages
35
Reaction score
13
Location
Centurion
So for the last few days, I've been having heavy packet drops on my fibre line,
After logging several calls with my ISP and them just doing the normal port reset etc, I decided to check my router to see what is going on.
Upon investigation I found this:

Screenshot 2022-01-04 153455.png

I'm getting bombed with 86k packets/second, I then torched the interface and I can see that I'm being hit by ICMP packets.

Screenshot 2022-01-04 190820.png
My question is aren't ISPs supposed to have some kind of DDoS protection in place to avoid attacks like this?
 
I’m willing to bet you play competitive games so install Cloudflare Warp and let them take care of the problem
 
I’m willing to bet you play competitive games so install Cloudflare Warp and let them take care of the problem
I do, but the thing is they are bombing my WAN interface, can't do squat with the interwebs while I'm being bombed.
 
I do, but the thing is they are bombing my WAN interface, can't do squat with the interwebs while I'm being bombed.
Ask for a IP change and make sure to use Warp (Warp+ if you can) when gaming. Unless there’s a leak you won’t be going offline

Their grabbing the IP in game so if you use Warp they will get the Cloudflare IP

@AfriNatic
 
Ask for a IP change and make sure to use Warp (Warp+ if you can) when gaming. Unless there’s a leak you won’t be going offline

Their grabbing the IP in game so if you use Warp they will get the Cloudflare IP

@AfriNatic
Thanks! I'll definitely check it out
 
Why do you have ICMP open?

I only noticed ICMP was open when I torched the interface and checked the rules, not sure if I put the rule there or if it's part of the default config,

But it's gone now.

I don't think its really going to make a difference, the 86 000 packets per sec will still hit the interface and consume my bandwidth
 
So for the last few days, I've been having heavy packet drops on my fibre line,
After logging several calls with my ISP and them just doing the normal port reset etc, I decided to check my router to see what is going on.
Upon investigation I found this:

View attachment 1221936

I'm getting bombed with 86k packets/second, I then torched the interface and I can see that I'm being hit by ICMP packets.

View attachment 1221938
My question is aren't ISPs supposed to have some kind of DDoS protection in place to avoid attacks like this?
What software did you use?
 
ok, im also noticing timeouts on AH DNS requests. My ICMP is locked down. I hope that scourge from 2 yrs ago isint starting again.
 
Drop your connection and bring it up again, see if you get a new ip. If not, ask afrihost to change yours.
 
So for the last few days, I've been having heavy packet drops on my fibre line,
After logging several calls with my ISP and them just doing the normal port reset etc, I decided to check my router to see what is going on.
Upon investigation I found this:

View attachment 1221936

I'm getting bombed with 86k packets/second, I then torched the interface and I can see that I'm being hit by ICMP packets.

View attachment 1221938
My question is aren't ISPs supposed to have some kind of DDoS protection in place to avoid attacks like this?

Morning,

Which FNO are you using?
 
Top
Sign up to the MyBroadband newsletter
X