Quote:
Originally Posted by XxFearReaperXx
Hey idol, as most of use face, what about network level protection? Not Software but at protection where it actually counts? No uhmm ok lol didn't think so..
|
all hardware runs on some software lol if you look these are solutions not for inside your server but to protect it from the outside .... am not talking about a software firewall inside windows .. you cant offload something that has already reached its destination lol.... you are right a hardware solution is the way to go but these "are" hardware solutions ..... if you put them in separate hardware
actually the honeypot itself needs to be completely seperate from your server to be able to work correctly.... installing or converting a honeypot on ur gameserver would just make it more vulnerable lol
any firewall you install "in" windows will always have windows limitations is best to use an external source
but firewall by itself will not protect you from a ddos attack just dropping or refusing the packets they are still connecting ... if you give them somehwere to go (maybe back where they came from?) they just pass through affecting the connection less
idealy would be good to add your windows installation inside a linux shell so you can use iptables instead of windows firewall as the software firewall for the system
if you created a dns server you could also filter your connections at the dns level as well as serve applications to your internal network
if you really wanted to you could also add a reverse proxy system to your firewall with an ip from another network to mask your actual ip and allow for better filtering