Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
leath
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
leath
5y ago
We already have a token in the protocol and this is indeed a viable way to help drop invalid traffic. However, none of us are really experienced enough with the networking stack of the linux kernel (nor are these things very well documented
2.
▲
by
leath
5y ago
A mention in a German gaming magazine very early on in the games lifetime brought a fair bit of attention
3.
▲
by
leath
5y ago
The public prosecutor did. Not sure how much more intimidating we could be than a prosecutor showing up threatening legal action
4.
▲
by
leath
5y ago
Funnily enough our experience has been much the reverse. Hetzner will let us use the 1g dedicated link they promise however we want. Most other hosters will put blanket filters that are too broad or their smart ddos filtering will kick in,
5.
▲
by
leath
5y ago
100% agree with you. We gave the ISPs more than enough time to get this under control, yet they don't seem to want to bear any cost in preventing what are essentially crimes (though as shown in the blog post cybercrimes are seen as a b
6.
▲
by
leath
5y ago
The blog post does mention this possibility. In a similar vein we can also try to mimic a protocol that is well supported by hosters, like source or minecraft but I'm fairly certain that would be the single most ugliest piece of code e
7.
▲
by
leath
5y ago
Documentation seems to say that they let you use the network from any platform as long as you have a Steam release. The bigger concern is that this requires linking with a closed source library, which means the open source version of the cl
8.
▲
by
leath
5y ago
The proof of work idea is cute, but at this stage it's not necessary as profiling seems to show attacks don't get too deep into the netcode before getting dropped. It's hard to know without testing but I'm fairly certain
9.
▲
by
leath
5y ago
This is a nice read https://blog.cloudflare.com/the-root-cause-of-large-ddos-ip-... It is indeed possible for ISPs to stop this, but my guess is that it's cheaper not to :) Large ISPs could require egress filtering for
10.
▲
by
leath
5y ago
As the blogpost mentions TCP is not exactly desirable for our project. Moreover, if you contact Cloudflare about those products you'll get a monthly quote that is far beyond what an open source project run by donations can sustain :)
11.
▲
by
leath
5y ago
We've had several servers with OVH, including their kimisufi line, So You Start GAME line, their standard GAME line and their standard servers. While I'm sure these are great for common games their DDoS protection seems to get con
12.
▲
by
leath
12y ago
Actually not all port 53 as there are some DNS servers still accessible and actually resolves stuff fine.