[pve-devel] SYN FLOOD - PVE FIREWALL

Detlef Bracker bracker at 1awww.com
Thu Jun 4 01:54:36 CEST 2015


Dear,

is that a good Idea to prevent SYN FLOOD on Proxmox host with uncomment

#net.ipv4.tcp_syncookies=1

Or is their something other to prevent in the PVE-Firewall?

We had in 2 days 2 SYN FLOOD to MySQL-Servers on many Containers with
diferent destination
IPs and comes only from one IP! The OVH DDoS Mitigation stop many of
this traffic but not all!
Only with blacklisting of the IP we have stop. But how we can stop this
on other ways?

Regards

Detlef



-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.proxmox.com/pipermail/pve-devel/attachments/20150604/4dd15cb6/attachment.sig>


More information about the pve-devel mailing list