<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Success Means Security: How to protect your most profitable web sites from distributed denial of service attacks (an open source approach)</title>
	<atom:link href="http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/feed/" rel="self" type="application/rss+xml" />
	<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/</link>
	<description>Advanced Search Engine Marketing Tips to Succeed Online</description>
	<pubDate>Tue, 18 Nov 2008 15:11:04 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.3</generator>
		<item>
		<title>By: Jez</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1815</link>
		<dc:creator>Jez</dc:creator>
		<pubDate>Wed, 12 Sep 2007 16:08:46 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1815</guid>
		<description>Well we just suffered a "suspected" DDOS attack... have yet to prove this but we lost service several times due to a series of spikes in the volume of requests. 
Having read this post a few days ago installing this module was on my list of things to do... following our recent problems we installed it in a bit of a hurry (without proper testing :-( )! It will be interesting to see the results!</description>
		<content:encoded><![CDATA[<p>Well we just suffered a &#8220;suspected&#8221; DDOS attack&#8230; have yet to prove this but we lost service several times due to a series of spikes in the volume of requests.<br />
Having read this post a few days ago installing this module was on my list of things to do&#8230; following our recent problems we installed it in a bit of a hurry (without proper testing <img src='http://hamletbatista.com/wp-includes/images/smilies/icon_sad.gif' alt=':-(' class='wp-smiley' /> )! It will be interesting to see the results!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamlet Batista</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1567</link>
		<dc:creator>Hamlet Batista</dc:creator>
		<pubDate>Thu, 06 Sep 2007 14:34:52 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1567</guid>
		<description>Many hosting companies have in their TOS a termination clause if you are caught spamming or facing a DDOS attacks. The problem is that those attacks usually affect all of their clients.</description>
		<content:encoded><![CDATA[<p>Many hosting companies have in their TOS a termination clause if you are caught spamming or facing a DDOS attacks. The problem is that those attacks usually affect all of their clients.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamlet Batista</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1566</link>
		<dc:creator>Hamlet Batista</dc:creator>
		<pubDate>Thu, 06 Sep 2007 14:32:18 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1566</guid>
		<description>Bart - let me know how it works for you</description>
		<content:encoded><![CDATA[<p>Bart - let me know how it works for you</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamlet Batista</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1565</link>
		<dc:creator>Hamlet Batista</dc:creator>
		<pubDate>Thu, 06 Sep 2007 14:31:43 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1565</guid>
		<description>Paul - I only use dedicated and co-located servers so I don't know where to point you. On the other hand, if you are using shared hosting (and you are not upsetting someone) you are probably not an interesting target for these attackers.</description>
		<content:encoded><![CDATA[<p>Paul - I only use dedicated and co-located servers so I don&#8217;t know where to point you. On the other hand, if you are using shared hosting (and you are not upsetting someone) you are probably not an interesting target for these attackers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamlet Batista</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1564</link>
		<dc:creator>Hamlet Batista</dc:creator>
		<pubDate>Thu, 06 Sep 2007 14:28:46 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1564</guid>
		<description>There are hardware solutions to DDOS, but my problem with them is flexibility and cost. It is usually easier and cheaper to add more memory and CPU to a Linux server than to a Cisco device. You also don't need an expensive support contract to upgrade the software ;-)</description>
		<content:encoded><![CDATA[<p>There are hardware solutions to DDOS, but my problem with them is flexibility and cost. It is usually easier and cheaper to add more memory and CPU to a Linux server than to a Cisco device. You also don&#8217;t need an expensive support contract to upgrade the software <img src='http://hamletbatista.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hamlet Batista</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1563</link>
		<dc:creator>Hamlet Batista</dc:creator>
		<pubDate>Thu, 06 Sep 2007 14:25:42 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1563</guid>
		<description>Jez - this technique is very scalable. Another reason I separate the protection from the real server is that the real server is usually CPU and memory intensive, while the protection requires minimum. Ultimately your server hardware and available bandwidth will determine the size of the attacks you can handle.</description>
		<content:encoded><![CDATA[<p>Jez - this technique is very scalable. Another reason I separate the protection from the real server is that the real server is usually CPU and memory intensive, while the protection requires minimum. Ultimately your server hardware and available bandwidth will determine the size of the attacks you can handle.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Florchakh</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1529</link>
		<dc:creator>Florchakh</dc:creator>
		<pubDate>Wed, 05 Sep 2007 21:13:42 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1529</guid>
		<description>What a great comprehensive post, I was looking for it*

* - sounds spammy but this time I'm serious, I was in dramatical need of getting the DDOS problem solved and I do think your post helped a lot!</description>
		<content:encoded><![CDATA[<p>What a great comprehensive post, I was looking for it*</p>
<p>* - sounds spammy but this time I&#8217;m serious, I was in dramatical need of getting the DDOS problem solved and I do think your post helped a lot!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jez</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1510</link>
		<dc:creator>Jez</dc:creator>
		<pubDate>Wed, 05 Sep 2007 11:47:02 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1510</guid>
		<description>One company I had a dedicated server with said something along the lines of "if you suffer DDOS attacks we will terminate your contract, burn your data to DVD ROM and send it to you in the post"... i.e. that hosting company could not handle sustained DDOS attacks. This was a few years ago when there seemed to be no answer to the problem... they were actually a very good company.... not idiots by any stretch... they were one of the only companies I saw at the time that actually had a policy covering DDOS.</description>
		<content:encoded><![CDATA[<p>One company I had a dedicated server with said something along the lines of &#8220;if you suffer DDOS attacks we will terminate your contract, burn your data to DVD ROM and send it to you in the post&#8221;&#8230; i.e. that hosting company could not handle sustained DDOS attacks. This was a few years ago when there seemed to be no answer to the problem&#8230; they were actually a very good company&#8230;. not idiots by any stretch&#8230; they were one of the only companies I saw at the time that actually had a policy covering DDOS.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jez</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1509</link>
		<dc:creator>Jez</dc:creator>
		<pubDate>Wed, 05 Sep 2007 11:43:05 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1509</guid>
		<description>A firewall can protect against DDOS?</description>
		<content:encoded><![CDATA[<p>A firewall can protect against DDOS?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sharingmatters.com</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1505</link>
		<dc:creator>Sharingmatters.com</dc:creator>
		<pubDate>Wed, 05 Sep 2007 08:37:44 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1505</guid>
		<description>Hi Hamlet. Can you recommend any hosting company that you think is quite safe and protects against different attacks? Your solutions are for dedicated servers but still many people use standard hosting packages.</description>
		<content:encoded><![CDATA[<p>Hi Hamlet. Can you recommend any hosting company that you think is quite safe and protects against different attacks? Your solutions are for dedicated servers but still many people use standard hosting packages.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Indiana Jones</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1481</link>
		<dc:creator>Indiana Jones</dc:creator>
		<pubDate>Tue, 04 Sep 2007 21:18:43 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1481</guid>
		<description>Usually a hardware firewall is a better solution.</description>
		<content:encoded><![CDATA[<p>Usually a hardware firewall is a better solution.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jez</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1470</link>
		<dc:creator>Jez</dc:creator>
		<pubDate>Tue, 04 Sep 2007 14:46:09 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1470</guid>
		<description>Hi Hamlet,

Is this countermeasure just designed to stop your servers being knocked over as opposed to dealing with a sustained barrage of requests?

Perhaps that type of 'sustained' attack  is out-moded now IP spoofing is more difficult???

This is a very interesting post!</description>
		<content:encoded><![CDATA[<p>Hi Hamlet,</p>
<p>Is this countermeasure just designed to stop your servers being knocked over as opposed to dealing with a sustained barrage of requests?</p>
<p>Perhaps that type of &#8217;sustained&#8217; attack  is out-moded now IP spoofing is more difficult???</p>
<p>This is a very interesting post!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Protecting Your Site from DDOS Attacks ::</title>
		<link>http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1466</link>
		<dc:creator>Protecting Your Site from DDOS Attacks ::</dc:creator>
		<pubDate>Tue, 04 Sep 2007 13:42:19 +0000</pubDate>
		<guid isPermaLink="false">http://hamletbatista.com/2007/09/04/success-means-security-how-to-protect-your-most-profitable-web-sites-from-distributed-denial-of-service-attacks-an-open-source-approach/#comment-1466</guid>
		<description>[...] Success Means Security: How to protect your most profitable web sites from distributed denial of ser... Subscribe!   Social Bookmark This! These icons link to social bookmarking sites where readers can share and discover new web pages. [...]</description>
		<content:encoded><![CDATA[<p>[...] Success Means Security: How to protect your most profitable web sites from distributed denial of ser&#8230; Subscribe!   Social Bookmark This! These icons link to social bookmarking sites where readers can share and discover new web pages. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
