(04-27-2020, 10:37 PM)youssefbasha Wrote: Well, what @chanalku91 said really helped us!
The solution was to configure the firewall with the right rules, dedi server is now up for about 4 hours and no ddos signs.
I will check the dedicated server for 24 hours to know if its safe now or the ddos just stopped for some time
Your thread was about comparing Fail2Ban vs DDoS Deflate (take a look at the title), @
chanalku91's response was out of this thread's supposed scope!!.. and still managed to be "really helpful"!! Good for you!.. Next time, just state your actual problem directly!
The first 'D' in the DDoS acronym stands for 'distributed', which means that the denial-of-service is coming from MANY IP addresses (ie a botnet.) Thus Fail2Ban will most probably have zero effect on the attack, especially if it's not at the application-layer (of the OSI model.)
So, can you share your solution, ie those 'right firewall rules', and some specifics as to the type of the DDoS attack. We might learn something from your incident, you know!