We have been fighting attacks on 2 servers for over 24 hours, after a settling, they started up again 20 minutes ago,then got better, now they are far worse and impacting many more servers. We are checking this out now.
The entire network is having a very high packetloss due to this right now, everything is respnding VERY slowly due to the fact it is being hammered hard.
Twitter will not allow me to post publicly for some reason, so I have replied a few DM, but I cannot continue updating everyone one on one, it takes away from getting things up here.
We are putting in a request to null route the Win39 shared IP address. This same server was attacked earlier in the week but on a very small subset of shared IP address. One of the sites pointing to that small shared IP is the target of the attack, and we will be trying to evaluate which domain that was being attacked and remove it from the network, as this is the 3rd large DDOS that was likely target to that domain.
Once this is in place it will make the rest of the network up and we will have to deal with the sites on the shared IP throughout the day and tomorrow.