1. Here you will find official announcements and updates. These announcements are also linked in the Official SotA Discord server.
    We encourage comments from the community! To keep the announcements official, we ask that comment threads be created in the General forums for player input.

                                                 Thanks!

DDOS Attack

Discussion in 'Announcements' started by DarkStarr, Apr 1, 2016.

Thread Status:
Not open for further replies.
  1. ThurisazSheol

    ThurisazSheol Avatar

    Messages:
    2,309
    Likes Received:
    3,988
    Trophy Points:
    165
    Location:
    The Drowned Mountains
    no time to read anything but the OP, work is kinda busy today oddly enough...

    lol thanks! just made my day.
     
    Leelu likes this.
  2. Noric

    Noric Avatar

    Messages:
    1,328
    Likes Received:
    1,822
    Trophy Points:
    113
    I'm afraid that one went over my head...
     
    Leelu likes this.
  3. Oba Evesor

    Oba Evesor Avatar

    Messages:
    974
    Likes Received:
    2,188
    Trophy Points:
    105
    Gender:
    Male
    Location:
    S.F.
  4. Mitch [MGT]

    Mitch [MGT] Avatar

    Messages:
    489
    Likes Received:
    1,042
    Trophy Points:
    43
    Gender:
    Male
    Watching that website is strangely soothing.
     
  5. Sophi

    Sophi Avatar

    Messages:
    918
    Likes Received:
    2,736
    Trophy Points:
    93
    Gender:
    Female
    Location:
    Sol III
    arg
     
    Dariog and Leelu like this.
  6. Favonius Cornelius

    Favonius Cornelius Avatar

    Messages:
    212
    Likes Received:
    349
    Trophy Points:
    18
    Seems like a lot of MMO these days are getting DDOS. I hope this does not doom the future of online gaming.
     
    Leelu likes this.
  7. Chris

    Chris Tech Lord Moderator Ambassador SOTA Developer

    Messages:
    2,470
    Likes Received:
    27,551
    Trophy Points:
    190
    Gender:
    Male
    Update: Actually this appears to be a connection problem within our cloud host that caused the Altair9000. Just a coincidence that is also happened while the website was under a DDOS. Hoping to have things restored shortly.
     
    Tahru, Elwyn, Sara Dreygon and 13 others like this.
  8. Chris

    Chris Tech Lord Moderator Ambassador SOTA Developer

    Messages:
    2,470
    Likes Received:
    27,551
    Trophy Points:
    190
    Gender:
    Male
    Also, this is far from the first DDOS attack on the website. We get those frequently. :( The game servers actually run UDP so they can be attacked via flood but a tougher type attack to pull off.
     
  9. enderandrew

    enderandrew Legend of the Hearth

    Messages:
    7,359
    Likes Received:
    15,646
    Trophy Points:
    165
    Gender:
    Male
    Location:
    Omaha, NE
    Cloudflare's DDOS protection for websites is pretty decent and free. I hope you're leveraging that.

    And UDP traffic has plenty of advantages. I'm not sure why people often treat UDP like a dirty word. Games are a particularly good use case for UDP traffic.
     
    ThurisazSheol, tphilipp and Chris like this.
  10. Astor Cerberus

    Astor Cerberus Avatar

    Messages:
    385
    Likes Received:
    997
    Trophy Points:
    55
    Gender:
    Male
    Location:
    Texas, USA
    UDP is efficient and has low overhead _but_ in a DDoS context it's tougher to defend against UDP attacks - primarily because it's connectionless and hence source addresses can be spoofed. Damned if you do, damned if you don't.
     
  11. Andrew Silverston

    Andrew Silverston Avatar

    Messages:
    527
    Likes Received:
    811
    Trophy Points:
    63
    Gender:
    Male
    You know why and who DDOSing SOTA? gold sellers tried to establish themselves, but they couldn't find any hooks to exploit, so they are raging now .... If you tack sources of the attack, I wonder where would they originate... Hmm... I don't wanna be a jerk throwing around stereotypical conclusions, so I'll leave it at that... Hopefully Portalarium can withstand the attacks.
     
    Ahuaeynjgkxs likes this.
  12. EclipseMaiden

    EclipseMaiden Avatar

    Messages:
    228
    Likes Received:
    856
    Trophy Points:
    30
    Gender:
    Female
    Location:
    Atlanta, Georgia
    Dont Worry Yall! The release party is still gonna happen! Justyn and I decorated it so fiercy that people with small "swords" cant get in! Also, the strongest mages casted protection spells around the town AND if thats not enough I am sure the devs can drop a bunch of scary purple Llamas as protection as well! Get ready to party hard in Serpents Watch!
     
    Acred likes this.
  13. tphilipp

    tphilipp SotA Dev Moderator SOTA Developer

    Messages:
    535
    Likes Received:
    1,747
    Trophy Points:
    63
    Thanks for suggesting, and yes, we did (back then) talk about it. Given that SotA's site is pretty dynamic in content, with the heaviest use on the forums, CloudFlare caching is of little benefit to us. And Cloudflare's DDoS protection is rate limiting, etc., which we also do in multiple ways on our side, eventually blacklisting abusers. Cloudflare is designed IMHO rather for people with a single server set up, not having any time or money or both to bother about load balancing, anti-DoS techniques, etc.. And that is a setup we already surpassed before we launched on Kickstarter. With every attack we were able to tweak our setup, and well... the one from this morning (on the website) wasn't even noticeable to the end user.
    That counts for the website, though, which usually is the primary attack surface for most script kiddies out there. The game server is a different setup and sees less attacks, so things will also grow from experience, there. Thanks for hanging in there with us.
     
    Tahru, Umbrae, tekkamansoul and 15 others like this.
  14. tphilipp

    tphilipp SotA Dev Moderator SOTA Developer

    Messages:
    535
    Likes Received:
    1,747
    Trophy Points:
    63
    Not certain... often it's just a botnet of hijacked machines. This morning, interestingly enough, every single one of the IPs involved were from a big hosting company, originating from multiple datacenters all over the US. So... either somebody found a bigger exploit and was able to spin up a lot of machines, or someone having access to that infrastructure (e.g. an admin) is (ab)using it.
    We blocked entire IP ranges belonging to that hoster, as it is very unlikely that SotA is important to be reached from a datacenter. However, to make sure we didn't block people using some hosted machine as a proxy or so, we verified that none of the IPs blocked accessed the game or website, before.
    Also, I reported the abuse to that company, hoping they'll look at who's controlling those machines, but haven't heard back, yet.
     
    Last edited: Apr 1, 2016
    Tahru, Umbrae, tekkamansoul and 16 others like this.
  15. tphilipp

    tphilipp SotA Dev Moderator SOTA Developer

    Messages:
    535
    Likes Received:
    1,747
    Trophy Points:
    63
    If that's soothing, then Norse kinda failed with their marketing idea behind that map.You're supposed to see that attacks are everywhere, then get paranoid, and then buy their products... ;)
     
    Tahru, Umbrae, Chatele and 6 others like this.
  16. FrostII

    FrostII Bug Hunter

    Messages:
    5,891
    Likes Received:
    11,040
    Trophy Points:
    153
    Gender:
    Male
    Location:
    Pacific Northwest
    Now THAT is some great feedback !

    Thanks for taking the time to keep us in the loop. @tphilipp .... :)

    Gonna relax now and use the time to explore Single Player Offline.... ;)
     
    Last edited: Apr 1, 2016
    Umbrae, Chatele, Ahuaeynjgkxs and 6 others like this.
  17. tphilipp

    tphilipp SotA Dev Moderator SOTA Developer

    Messages:
    535
    Likes Received:
    1,747
    Trophy Points:
    63
    :) Thanks for the nice words, and for hanging in there, and sorry for the inconveniences caused.
     
  18. FrostII

    FrostII Bug Hunter

    Messages:
    5,891
    Likes Received:
    11,040
    Trophy Points:
    153
    Gender:
    Male
    Location:
    Pacific Northwest
    We're all in this together......;)
     
  19. HoustonDragon

    HoustonDragon Avatar

    Messages:
    1,526
    Likes Received:
    4,399
    Trophy Points:
    125
    Gender:
    Male
    Location:
    Atlanta, GA
    If there was a drinking contest in the grand world of things that happen with IT, we'd all die of liver failure :p
     
    Ahuaeynjgkxs and tphilipp like this.
  20. ThurisazSheol

    ThurisazSheol Avatar

    Messages:
    2,309
    Likes Received:
    3,988
    Trophy Points:
    165
    Location:
    The Drowned Mountains
    tphilipp and Mitch [MGT] like this.
Thread Status:
Not open for further replies.