Ilaalinta DDoS
Ilaalinta DDoS firfircoon
Ilaalinta DDoS
DDoS waa isku day lagu doonayo in lagu damiyo agabka server-ka, shabakadda, goobta si aanay isticmaalayaashu u heli karin kheyraadka laftiisa. Ilaalinta DDoS si toos ah ayuu u ogaadaa oo u yareeyaa weerarrada lagu beegsanayo mareegta martigelinaysa iyo server-ka. Sannad kasta, qeexitaanka weerarka DDoS wuxuu sii wadaa inuu noqdo mid aad u adag. Dembiilayaasha internetka ayaa isticmaala isku darka weerarro aad u waaweyn iyo sidoo kale kuwo aad u khiyaano badan oo adag in la ogaado cirbadaha. Our Nidaamka ilaalinta DDoS waxay kaydin doontaa kheyraadkaaga iyo xogtaada adoo isticmaalaya Arbor, Juniper iyo qalab kale.
Iibsashada ka hortagga weerarrada DDoS waxaad heli doontaa
Ilaalinta DDoS
Ka-hortagga dhammaan noocyada weerarrada ilaa 1.2TBps ama 500mpps


Lakabka 3, 4 iyo 7 ilaalinta
Nidaamku wuxuu si toos ah u xannibaa weerarrada socda ee Lakabka 3, 4 iyo 7 (weerarada arjiga iyo bogagga shabakadda ee ka shaqeeya borotokoolka HTTP iyo HTTPS)
Gaadiidka aan xadka lahayn
Gabi ahaanba aan xadidnayn Ma jiraan wax xaddidaad ah oo ku saabsan xaddiga taraafikada ee la isticmaalo dhammaan qorshayaasha tacriifada.


Ilaalinta gaadiidka sir ah
Shaandheeyayaashu waxay sugaan taraafikada HTTPS wakhtiga dhabta ah, iyada oo aan la xannibin ciwaanka IP-ga, gaar ahaan heerka codsiga (Lakabka 7).
Ciribtirka Degdega ah
Nidaamkeena ilaalinta DDoS ayaa si toos ah u ogaan doona oo xannibi doona muujin kasta oo weerar wax ka yar dhowr millisek.


Shabakadaha la ilaaliyo ee cinwaanada IP
Waxaan gacanta ku haynaa tiro badan oo shabakado IP ah oo sugan oo cabbirro kala duwan leh oo aan hoos imanayn weerarada DDoS.
Ilaalinta DDoS waa qof kasta
Ilaalinta DDoS ma abuurto culays dheeraad ah server-ka ama taraafikada. Nidaamkeenu wuxuu si joogto ah u ogaan doonaa weerarrada DDoS, iyo aqoonsiga iyaga ayaa si joogto ah u fiicnaan doona. Marka weerarka la ogaado, ilaalinta firfircoon ee DDoS ayaa isla markiiba soo geli doonta oo sifeyn doonta weerarka. Habka taraafikada weerarka ee DDoS caadiyan ma saameeyo taraafikadaada sababtoo ah habka yaraynta weerarka firfircoon.
Adeegga ilaalinta DDoS
Waxaan bixinaa xirfadleyaal ilaalinta weerarrada DDoS noocyo kala duwan. Adeegeenu wuxuu awoodaa inuu ka ilaaliyo mareegahaaga, server-ka ciyaarta ama adeeg kasta oo kale ee TCP/UDP weerarada DDoS. Shaandhaynta fog waxay kuu ogolaanaysaa inaad si buuxda u shaandhayso dhammaan noocyada weerarada DDOS, ilaa 1.2TBps, taas oo noo ogolaanaysa inaanu macaamiisheena siino adeeg heersare ah. Xidhiidhka adeegani waxa uu qaadan doonaa dhawr daqiiqadood oo kaliya.
Marka loo eego habka saameynta, noocyada soo socda ee weerarrada DDoS waa la kala saari karaa:
Lakabka Shabakadda ee DDoS (Layer 3,4) kaas oo saameeya waxqabadka qalabka server-ka, xaddida ama waxyeelada software dayacanka borotokoolka.
Weerarrada DDoS ee heerka codsiga (Layer 7), kaas oo weerar ku ah meelaha "daciifka ah" ee kheyraadka, si ula kac ah u shaqeeya, waxay leeyihiin farqi u dhexeeya isticmaalka ugu yar ee kheyraadka, tirada ayaa ku guuleysta waxayna u baahan yihiin ka-hortagga ugu adag, sidoo kale sida kharashaadka maaliyadeed ee waaweyn.
Martigelin sugan
Lagu martigeliyay ilaalinta DDoS, goobta casriga ah waa in laga ilaaliyaa weerarrada DDoS.
Read more
La ilaaliyo
VDS-ka laga ilaaliyo VPS/VDS weerarrada DDoS ayaa ku habboon mashaariicda koraya.
Read more
Adeegayaasha la ilaaliyo
Waxaan siin doonaa ilaalin la isku halayn karo serferkaaga gaarka ah ee weerarada DDoS.
Read more
Shabakado sugan
Ilaalinta DDoS ee shabakadaada, ogaanshaha tooska ah iyo shaandhaynta taraafikada shabakadahaaga.
Read more
Joojinta nooc kasta oo weerar IP ah
- Ilaalinta baylahda borotokoolka
Ka-hortagga xajinta IP-ga, LAND, Fraggle, Smurf, WinNuke, Ping of Death, Tear Drop iyo Ikhtiyaarka IP, weerarrada baakidhka IP-ga jaban, iyo ICMP weerarrada baakidhka waaweyn, dib loo hagayo, iyo kuwa aan la gaadhi karin. - Ka-hortagga weerarrada nooca shabakadda
SYN, ACK Daadka, Daadka SYN-ACK, FIN/RST Daadka, TCP Fragment daad, UDP daad, UDP Fragment Daadadka, NTP daad, ICMP Daadadka, TCP Connection Daadadka, Sockstress, TCP Celinta iyo TCP werarada isku xidhka null. - Ka-hortagga iskaanka iyo weerarrada dhuuqista
Ka-hortagga iskaanka dekedda iyo ciwaanka, Tracert, Ikhtiyaarka IP, timestamp IP iyo weerarrada duubista marinka IP.
- Ilaalinta weerarka DNS
Ka-hortagga Werarada Daadka ee DNS-ka ee laga helo ilaha ciwaanka IP-ga dhabta ah ama beenta ah, Jawaabta DNS Weerarrada Daadka, Weerarrada Sunta Cache ee DNS, Weerarrada nuglaanta borotokoolka DNS iyo Weerarrada Milicsiga DNS. - Joojinta taraafikada botnet
Jooji taraafikada botnets, zombies firfircoon, fardaha trojan, gooryaanka iyo qalabka sida LOIC, HOIC, Slowloris, Pyloris, HttpDosTool, Slowhttptest, Thc-ssl-dos, YoyoDDOS, IMDDOS, Puppet, Storm, fengyun, AladinDDoS, iwm. . Iyo sidoo kale codsiyada C&C DNS si loo joojiyo taraafikada. - Ilaalinta serverka DHCP
Kahortagga weerarrada daadka DHCP.
- Ilaalinta weerarka mareegta
Ka-hortagga HTTP Daadka Hel, Daadka HTTP Post, Daadadka Madaxa HTTP, HTTP qunyar daadka daadka, HTTP qunyar socodka ka dib, Daadka HTTPS iyo SSL DoS/DDoS werarada. - Shaandhaynta liiska madow ee shaqaynaya
Shaandhaynta goobta HTTP/DNS/SIP/DHCP, goobta iyo shaandhaynta shaqaynaysa ee IP/TCP/UDP/ICMP/iwm. - Ilaalinta weerarka mobilada
Kahortagga weerarrada DDoS ee ay bilaabaan botnet-yada moobaylka sida AnDOSid/WebLOIC/AndroidAsal ahaan.DDoS.1. - Ilaalinta Codsiga SIP
Ka-hortagga weerarrada wasakheynta hababka SIP.

Khariidadda weerarrada internetka
Waxqabadka sare iyo nadiifinta mugga
Nidaamkani waa mid ka mid ah xarumaha xogta ee ugu weyn Yurub oo leh awood ilaa 1.2 Tbps si ay uga ilaaliso isticmaalayaasha weerarada waaweyn ee DDoS sida SYN daadka iyo xoojinta DNS. 12-kii bilood ee la soo dhaafay, tiro badan oo 600Gbps + weerarro IoT ah ayaa la ilaaliyay, taasoo ka dhigaysa mid ka mid ah nidaamyada difaaca ugu weyn Yurub. Marka laga soo tago weerarradan mugga sare leh, 40 Gb/s ilaalinta weerarka ayaa la sameeyay.
Laakiin, marka lagu daro awoodda, waxqabadka sare ayaa sidoo kale loo baahan yahay si loo sifeeyo weerarrada lakabka 7 iyo taageeridda daahitaanka dhabta ah ee guud ahaan dhammaan isticmaaleyaasha. Sababtoo ah waxay isticmaashaa jawi nadiifinta qalabka aadka u dhaqsaha badan oo loo yaqaan "DDoS ilaalinta daruuraha", nadiifinta DDoS waxay dabooshaa dhammaan kaabayaasha. Sidaa darteed, nadiifinta laguma fulin doono hal guddi, laakiin waxaa samayn doona router badan iyo furayaasha kuwaas oo u shaqeyn doona hal nidaam oo bixiya dib u dhigista ugu fiican.










