On Fri, 2016-03-18 at 10:05 +0000, Dave Howorth wrote:
On 2016-03-18 09:42, Carlos E. R. wrote:
On 2016-03-17 23:46, Hans Witvliet wrote:
I presume there is not much I can do,
but I noticed I get 10,000 ntp packets each 35 seconds. They can not do any harm, as I don't listen on my public interface (according to nmap).
My firewall drops them immediately, but my line chokes on them...
Weird.
Scatter from a DDOS attack?
Are you using dynamic outside IP, or fixed? If dynamic, perhaps you have currently an IP that was previously owned by another server that was listed under *.pool.ntp.org
If your IP is fixed, the only method I know is getting your ISP to drop them.
Indeed, i have a fixed /29 and see it on all addresses. Right now the storm is over. Looking at the addresses they came from San Diego, Odessa, Dhaka, Rotterdam, Surgut and Celldömölk. Have seen it before, but never as bad as last week. Hans -- To unsubscribe, e-mail: opensuse+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse+owner@opensuse.org