Skip to content

DDoS protection that isn't just 'null-route and pray'?

VPS Hosting by CarlosBilby 22 replies 3.2K views
#1

Mano, my VPS he got null-routed three times this month. Caramba! My game server it goes down, players they angry. I try more fast provider but he is same story.

I survey budget providers: OVHcloud, Vultr, InterServer. OVHcloud say "we have mitigation" but he is just 10Gbps then null. Vultr same. InterServer... actually they have Arbor thing? I not understand. They say "clean pipe" but how I know?

I sign up InterServer smallest plan. I test with stresser (my own, for test!). Immediately he trigger protection. Kkkkk. Traffic drop to zero, then come back clean. False positive? My legit players they can connect after.

Someone else test this? I want know false positive rate before I pay yearly.

#2

InterServer's Arbor setup is legit, I had a minecraft box there last year and it soaked a 15Gbps booter without nulling. Took like 30 seconds to clean though, players got kicked briefly. Your own stresser test sounds promising if they came back clean that fast.

$3/year. 128MB RAM. Pure happiness.
#3

InterServer actually uses ~commercial Arbor deployment~, basically their upstream partner facility in Secaucus. I am check last year for my proxy service.

False positive... actually high for UDP game traffic? Their heuristic basically flag anything with amplification signature. You are need TCP-only or he will drop sometimes. (´・ω・`)

I am stay with Vultr + separate protection layer. More control, basically.

instant noodles, instant deploys
#4

InterServer's "smallest plan" is probably 1GB on E5-2670. Their mitigation box is shared across how many customers?

My own setup: 256GB DDR4, dual EPYC, 10G unmetered at Leaseweb. DDoS? I absorb it. No false positives when you control the null-route yourself.

Budget mitigation is always oversubscribed. You get what you pay for.

#5

Which stresser test you run, udp or tcp?

#6

I have same problem with OVHcloud my friend. They null route very fast!

#7

UDP my friend, my game he use UDP. I test TCP also, TCP he pass fine. UDP trigger always. This is problem?

8 #8

Then ronwit is right, Arbor heuristic flag UDP amplification pattern. Your game traffic look like NTP or DNS reflection to box.

#9

Exactly. I am run Minecraft Java, mostly TCP, but voice chat plugin use UDP. Drop every afternoon peak. I move voice to Discord bot, problem solve.

instant noodles, instant deploys
#10

Arbor is a box that reads headers fast and guesses. It don't know your game from garbage. You want clean UDP you pay for RTBH signaling or run your own sflow collector. Budget = shared = guesswork.

Post a reply

You need an account to reply. Log in or register to join the conversation.

Post reply Preview Save draft