Register for your free account! | Forgot your password?

Go Back   elitepvpers > Popular Games > Silkroad Online > SRO Private Server
You last visited: Today at 15:59

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Few-Steps] To FiX your Server Security !

Discussion on [Few-Steps] To FiX your Server Security ! within the SRO Private Server forum part of the Silkroad Online category.

Closed Thread
 
Old   #1
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Cool [Few-Steps] To FiX your Server Security !

Hello ,

We hear Today many server down/crash due of some kinds of attack due of the servers masters(admins) haven't skills/exp in protection/security

Anyway in Security u must use ur mind first Before everything else , even if u don't got any skills in protection or so .

Here's a few steps You must Done to make your server Something secure :

1 - Add to your Firewall blocked Ports for all modules, I mean to block all ports of modules like GS shard global etc in firewall (black-list) exept ports of gateway/downloadserver/agentserver

2 - Add ports to your firewall (Open-ports) for Gateway/downloadserver/Agentserver {>>>> TCP ports only <<<<}

3 - don't ever open UDP ports for those modules Gateway/downloadserver/Agentserver

4 - add block UDP ports for Gateway/downloadserver/Agentserver in firewall

Oky You Now FiX the Crach of modules like gateway or GS or or or ,
Now the Rest Few Steps Of the Most security to your server :

1 - Change your dbs names, like change account db name also shard and log .
2 - close the remote use of sql server so only local connections could access to sql server .
3 - @ URL must be at ur local , so set at IIS the name or ip of website to 127.0.0.1 and set any port , also this port block it in your firewall .
4 - At last don't ever Open your cert. ports , Block it in your Firewall .

At last today isa I will release a New cert. which got protection module to prevent the injection from SMC on db . (So you could freely open GlobalManager TCP ports without any problems)

----------------------------------------------------------------
At last How to do those steps , i think they are easy enough and google will FTW always ^ _ ^
Anyway any step you don't understand just ask me Here

Quote:
Small summery :
Every module u launch the firewall gives it's access as access so the module port opened , Now HOW UR GAMESERVER CRASH due of attack on UDP Port of GS . So you must block the both ports of GS TCP and UDP from firewall as i say in the past posts .
----------------------------------------------------------------
Thread Updated :

The Most Important Part ,
If you use 2 dedi servers or more for 2 agents or more ,
So you are open farmmanager Ports ,
Oky after mints of hacking farmmanager security i find out that by small access to farmmanager from it's ports you could shutdown the SR_GameServer , shard and agent too
Also you could let the farmmanager send packets to GS which will make overflaw also could gives packets to shard and agents but GS is the mostly easy to take overflaw from stupid wrong packets send from FarmManager
Dr.Abdelfattah is offline  
Thanks
24 Users
Old 01/27/2012, 15:52   #2
 
elite*gold: 0
Join Date: Jan 2012
Posts: 1,867
Received Thanks: 1,091
OMG , you are the one at my opinion ! xD Thanks bro <3<3
•ᵔBeGodOfWarᵔ• is offline  
Thanks
1 User
Old 01/27/2012, 15:57   #3
Chat Killer In Duty


 
PortalDark's Avatar
 
elite*gold: 5
Join Date: May 2008
Posts: 16,315
Received Thanks: 6,471
Quote:
Originally Posted by Amanda98 View Post
This will not fix romeglory problem, i can feel it
maybe not, but a small help
aside, we need more details to know how to protect
PortalDark is offline  
Old 01/27/2012, 16:01   #4
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Well to make full protection need a verrrrrrrrrrrrrrrrrrrrrrrrrry BIG guide it will take from me time , maybe i will write one , But this Guide can make the security the people ask for .
Dr.Abdelfattah is offline  
Old 01/27/2012, 16:02   #5
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Quote:
Originally Posted by rushcrush View Post
lol go to hell noob


Dr: this not the fix
I tell u i need live check (TV) to take a look
But i still think ur problem fix from this guide .
Dr.Abdelfattah is offline  
Old 01/27/2012, 16:04   #6
 
elite*gold: 0
Join Date: Feb 2010
Posts: 2,278
Received Thanks: 443
Quote:
Originally Posted by Dr.Abdelfattah View Post
I tell u i need live check (TV) to take a look
But i still think ur problem fix from this guide .
well i will try what i just did
if i got it fixed i will release the fix
brb
rushcrush is offline  
Old 01/27/2012, 16:12   #7
 
elite*gold: 0
Join Date: Jan 2012
Posts: 130
Received Thanks: 90
Thanks Abdelfattah You're Da Best
Ahmed Abdelhady is offline  
Thanks
1 User
Old 01/27/2012, 16:13   #8
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Edit :
Remove Joking !~! as kids will stay kids
---------------------------
GameServer Can't Crashed From client packets ever (or even overflaw packets from outside) <<
So don't mind that the GS crash fix is out from this thread Just read well plz .
Dr.Abdelfattah is offline  
Old 01/27/2012, 16:41   #9
 
Schickl's Avatar
 
elite*gold: 0
Join Date: Feb 2009
Posts: 1,064
Received Thanks: 539
OT:
Things OP mentioned are basic security configurations
If someone doesn't know them he shouldn't run ANY server!
Schickl is offline  
Thanks
2 Users
Old 01/27/2012, 16:41   #10
 
elite*gold: 0
Join Date: May 2011
Posts: 490
Received Thanks: 148
you deserve 100 thanks not 1button only really
hamada619 is offline  
Thanks
1 User
Old 01/27/2012, 16:55   #11
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Quote:
Originally Posted by Amanda98 View Post
How is this an off topic? I'm replying to your failure code tag.
IS that was a code ?
Dr.Abdelfattah is offline  
Old 01/27/2012, 16:58   #12
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Quote:
Originally Posted by LastThief View Post
Ask yourself my friend

you said it's vb btw for your info vb doesn't use ; at the end of statement
I was joking with any **** but i was wrong
Dr.Abdelfattah is offline  
Old 01/27/2012, 17:02   #13
 
badibatu22's Avatar
 
elite*gold: 0
Join Date: Dec 2009
Posts: 594
Received Thanks: 358
Every pro server already have all of these i think , exploit is about gameserver or what ?
badibatu22 is offline  
Old 01/27/2012, 17:03   #14
 
Dr.Abdelfattah's Avatar
 
elite*gold: 7
Join Date: May 2010
Posts: 2,115
Received Thanks: 2,373
Quote:
Originally Posted by badibatu22 View Post
Every pro server already have all of these i think , exploit is about gameserver or what ?
ya on GS ,
Dr.Abdelfattah is offline  
Old 01/27/2012, 19:32   #15
 
elite*gold: 0
Join Date: Jan 2008
Posts: 98
Received Thanks: 11
Thanks primarily;

People are ignorant of the server opened,this information is simple,We started this business in 2004 by establishing MuOnline server.Wait for we, just let us know.Coming soon is a new server
shadedurza is offline  
Thanks
1 User
Closed Thread


Similar Threads Similar Threads
[Guide][Security] Securing Your Server * 1x Game Server *
02/22/2017 - SRO PServer Guides & Releases - 18 Replies
Summary: Alright, i know i haven't been around here releasing lately, been very distracted and have been resenting the ******** community, sorry i am back now and i will be writing some seriously amazing guides here! Noob friendly guides and other things too! Objective * We going to be managing the TCP connections and blocking the following ports -> 32000, 15880, 15882, 15885, 15883, 8080, 1433, 3306 <- * Set mssql to local * Set odbc to local Result
[Guide][Security] Securing Your Server * 1x Game Server *
12/11/2011 - SRO Private Server - 9 Replies
Summary: Alright, i know i haven't been around here releasing lately, been very distracted and have been resenting the ******** community, sorry i am back now and i will be writing some seriously amazing guides here! Noob friendly guides and other things too! Objective * We going to be managing the TCP connections and blocking the following ports -> 32000, 15880, 15882, 15885, 15883, 8080, 1433, 3306 <- * Set mssql to local * Set odbc to local Result
Security Server
10/22/2010 - Metin2 Private Server - 2 Replies
bitte helft mir .. wie man einen Sicherheits-Server zu erstellen metin2 nicht kontrollieren meinem Server nicht, um eine Verbindung meine navicatul tun, was er will die GM-MNU machen HELP Security server .. how to crate security server a Metin2 1 hacker to connect to my database and do gm .. I do not know exactly what he did. and Crashed server
[HELP]Better Security for dk server
03/10/2010 - Dekaron Private Server - 13 Replies
hey guys this is my first post asking for help, and yes ive used the search alot. your not gonna see this alot from me because im trying to learn like the old dev's...but wanna try and avoid SQL injects and get an adminpanel working..for ipbanning. ive tried OSDS but ive been sql injected through that before thats why im asking for just alittle bit of help this time. if anyone has any tips for me to help make a better secure server then please by all means help me out just alittle bit. props...
THQ v1.0 - Steps by steps instruction on how getting the hack to work
10/24/2009 - Dragonica Hacks, Bots, Cheats & Exploits - 41 Replies
I don't know if this is the right place to post it or not but can anybody who got the hack to work after v1.0 patch, please post it in here so we don't have a clutter of thread asking how to get to work... People reporting that their hack still work sexx, FamousOnion Please give us info OS Server



All times are GMT +2. The time now is 15:59.


Powered by vBulletin®
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2024 elitepvpers All Rights Reserved.