Koozali.org: home of the SME Server

DOS Attack

BK

DOS Attack
« on: April 05, 2002, 09:52:13 AM »
Hi all,

I will like to know is SME is prone to DOS (Denial of service) attack? Please advise.

Thanks

BK

Luke Drumm

Re: DOS Attack
« Reply #1 on: April 08, 2002, 03:10:46 AM »
As nobody has tackled this one...

The bulk of DOS attacks that actually occur tend to happen irrespective of the victims setup. As long as the victim has a connection to the internet, then they're a possible target.

There is no fix against these type of attacks with the exception of disconnecting from the 'net (or maybe changing IP address if the attack isn't relying on hostname/DNS lookups).

There are a smaller number of DOS attacks that rely on specific security loopholes in various protocols. As SME usually only deals with a small subset of very well known protocols, the chances of being attacked in this way are relatively small.

In short: As much as possible... but no more.

Regards,
Luke

Dave

Re: DOS Attack
« Reply #2 on: April 09, 2002, 08:45:38 PM »
We're getting hit right now with an apparent DOS.  The only thing you can do to avoid your server going down is to have some really kick-ass gear that your Mitel SME can run on.  We use a dual-Pentium with a gig of ram and a very fast bus and RAID.  We can handle alot of nasty TCP traffic as a result.