DDOS - Entire Country of Vietnam banned
- johu
- Site Admin
- Posts: 6674
- Joined: Thu Nov 08, 2018 10:52 pm
- Location: Kassel/Germany
- Has thanked: 359 times
- Been thanked: 1517 times
- Contact:
DDOS - Entire Country of Vietnam banned
Starting yesterday we saw massive bulks of requests that overloaded our server. I blocked two of the most active subnets and the requests stopped.
Today though I found the situation to be even worse. I searched some of the subnets and found they all originated from Vietnam.
So as a temporary measure I have blocked the entire Vietnam subnet list (there are many) in the firewall.
I'm not sure who is behind this and what their intention is. I'm sorry for every legit member or reader from Vietnam who are now blocked but I have to keep this up until the attacks stop.
I will keep this topic updated.
Today though I found the situation to be even worse. I searched some of the subnets and found they all originated from Vietnam.
So as a temporary measure I have blocked the entire Vietnam subnet list (there are many) in the firewall.
I'm not sure who is behind this and what their intention is. I'm sorry for every legit member or reader from Vietnam who are now blocked but I have to keep this up until the attacks stop.
I will keep this topic updated.
Support R/D and forum on Patreon: https://patreon.com/openinverter - Subscribe on odysee: https://odysee.com/@openinverter:9
- Proton
- Posts: 261
- Joined: Sat May 06, 2023 2:23 am
- Location: Georgia/US
- Has thanked: 173 times
- Been thanked: 27 times
Re: DDOS - Entire Country of Vietnam banned
That is weird. Hopefully they cannot VPN into another country and do it from there. Maybe some kids.
- johu
- Site Admin
- Posts: 6674
- Joined: Thu Nov 08, 2018 10:52 pm
- Location: Kassel/Germany
- Has thanked: 359 times
- Been thanked: 1517 times
- Contact:
Re: DDOS - Entire Country of Vietnam banned
Today it somewhat picked up again, this time from Brazil. I have removed the Vietnam ban and banned some hand-asorted subnets.
BTW you can see something is wrong when there are more than, say, 200 active users
BTW you can see something is wrong when there are more than, say, 200 active users
Support R/D and forum on Patreon: https://patreon.com/openinverter - Subscribe on odysee: https://odysee.com/@openinverter:9
- Proton
- Posts: 261
- Joined: Sat May 06, 2023 2:23 am
- Location: Georgia/US
- Has thanked: 173 times
- Been thanked: 27 times
Re: DDOS - Entire Country of Vietnam banned
If that server is at home you can install a PFsense firewall - Free software and then you can have lists added to known bad servers or IPs.
You just need a computer with 2 NIC cards
these are some of my lists.
you can also have VPN tunnels from you phones or PC to send all traffic back home through your firewall. All phones in my family send all traffic back home tunneled . that way you can connect to any wifi hotspts and nobody can see your traffic.
I installed the pFsense software on something like this:
https://www.aliexpress.us/item/32568068 ... 00237956_2
You just have to compare the processors to see what you need. they all use about 6W but the n150 has more power.
You just need a computer with 2 NIC cards
these are some of my lists.
you can also have VPN tunnels from you phones or PC to send all traffic back home through your firewall. All phones in my family send all traffic back home tunneled . that way you can connect to any wifi hotspts and nobody can see your traffic.
I installed the pFsense software on something like this:
https://www.aliexpress.us/item/32568068 ... 00237956_2
You just have to compare the processors to see what you need. they all use about 6W but the n150 has more power.
-
- Posts: 33
- Joined: Fri May 14, 2021 8:05 am
- Has thanked: 1 time
- Been thanked: 5 times
Re: DDOS - Entire Country of Vietnam banned
Seems like most of the pictures getts http 500 errors on the openinverter wiki when you klick on them, is that related to this in any way?
/Linda
/Linda
-
- Posts: 33
- Joined: Fri May 14, 2021 8:05 am
- Has thanked: 1 time
- Been thanked: 5 times
Re: DDOS - Entire Country of Vietnam banned
is there a way to download the openinverter wiki database to browse it offline with kiwix?
/Linda
/Linda
- johu
- Site Admin
- Posts: 6674
- Joined: Thu Nov 08, 2018 10:52 pm
- Location: Kassel/Germany
- Has thanked: 359 times
- Been thanked: 1517 times
- Contact:
Re: DDOS - Entire Country of Vietnam banned
Thanks for pointing that out. That must be caused by one of the recent updates though. Am looking into it.linda.ljungdahl wrote: ↑Sat May 17, 2025 3:54 pm Seems like most of the pictures getts http 500 errors on the openinverter wiki when you klick on them, is that related to this in any way?
The forum runs on a hired server somewhere in Germany, so can't play with the hardware. I assume the PFSense Firewall could be installed on it?
Support R/D and forum on Patreon: https://patreon.com/openinverter - Subscribe on odysee: https://odysee.com/@openinverter:9
- johu
- Site Admin
- Posts: 6674
- Joined: Thu Nov 08, 2018 10:52 pm
- Location: Kassel/Germany
- Has thanked: 359 times
- Been thanked: 1517 times
- Contact:
Re: DDOS - Entire Country of Vietnam banned
I installed MediaWiki 1.43.1 now and disabled the newly installed SemanticBundle (viewtopic.php?p=82317#p82317). This was the last alteration 10 days ago and I'm afraid it may have broken things. The installation was very intrusive.
Support R/D and forum on Patreon: https://patreon.com/openinverter - Subscribe on odysee: https://odysee.com/@openinverter:9
- Proton
- Posts: 261
- Joined: Sat May 06, 2023 2:23 am
- Location: Georgia/US
- Has thanked: 173 times
- Been thanked: 27 times
Re: DDOS - Entire Country of Vietnam banned
I am sure Iit can Be installed on a VM but not sure whatbis involved.
- johu
- Site Admin
- Posts: 6674
- Joined: Thu Nov 08, 2018 10:52 pm
- Location: Kassel/Germany
- Has thanked: 359 times
- Been thanked: 1517 times
- Contact:
Re: DDOS - Entire Country of Vietnam banned
The requests are still going, now from China also. I will need to find a solution that automatically blocks an entire /16 subnet as soon as it detects too many requests from that same subnet. That is what I currently do manually.
Support R/D and forum on Patreon: https://patreon.com/openinverter - Subscribe on odysee: https://odysee.com/@openinverter:9
- Proton
- Posts: 261
- Joined: Sat May 06, 2023 2:23 am
- Location: Georgia/US
- Has thanked: 173 times
- Been thanked: 27 times
Re: DDOS - Entire Country of Vietnam banned
can you limit the max connection per second from an IP address on your web server? You would think that the webhosting provider would give you that optinon.
Pfsense has a way to do that but you would have to make the pFsense your default gateway. Pfsense would need to have your public IP and your
webserver to be behind Pfsense.
"
1. Configuring Firewall Rules for DDoS Mitigation
pfSense's firewall rules are your first line of defense against DDoS attacks. By setting up specific rules, you can filter out malicious traffic and protect your network.
Block Malicious IPs:
Restrict Traffic by Geographic Region:
- Limit Incoming Connections:
2. Using pfBlockerNG for Enhanced Protection
pfBlockerNG is a powerful tool within pfSense that allows for advanced IP and domain blocking capabilities. It's essential for automated updates and enhanced DDoS protection.
Install pfBlockerNG:
Enable GeoIP Blocking:
Automated Block Lists: