Network issue - expanded DDOS attacks

Stephen

US Operations
Staff member
We have been fighting attacks on 2 servers for over 24 hours, after a settling, they started up again 20 minutes ago,then got better, now they are far worse and impacting many more servers. We are checking this out now.
 
The entire network is having a very high packetloss due to this right now, everything is respnding VERY slowly due to the fact it is being hammered hard.
 
We are putting in a request to null route the Win39 shared IP address. This same server was attacked earlier in the week but on a very small subset of shared IP address. One of the sites pointing to that small shared IP is the target of the attack, and we will be trying to evaluate which domain that was being attacked and remove it from the network, as this is the 3rd large DDOS that was likely target to that domain.

Once this is in place it will make the rest of the network up and we will have to deal with the sites on the shared IP throughout the day and tomorrow.
 
Win39 shared IP on the .20 address is the only current issue now, all the rest of the network is up and running.
 
Back
Top