Guild icon
DDraceNetwork
DDraceNetwork / general
This channel is for all Teeworlds/DDNet and related chat. Gameplay questions can be asked here as well rather than in #questions. Ingame screenshots and any other Teeworlds related media goes to #showroom.
Between 2019-11-02 00:00:00Z and 2019-11-03 00:00:00Z
Avatar
@jao's hairy kebab yo
Avatar
ddos again?
08:16
or why i can't find ddnet servers
Avatar
yes, still
09:12
You should still be able to connect, but it takes a while
Avatar
Cant we make a bot who mutes everyone for an hour who ask why servers are unplayable/ who starts talking about ddos?
f3 1
Avatar
or a bot that writes "its ddos" everytie someone asks
Avatar
"just add account system bro"
Avatar
Any idea behind why all these ddoses? Who wants to spend their bandwidth ddosing teeworlds :S
Avatar
Someone with no life
Avatar
@n000b why don't make a bot to unable ddos instead
banhammer 1
11:24
monkaS
banhammer 2
Avatar
i have the fix
12:48
boolean ddos = false;
Avatar
or ddnet servers could reroute all the inbound ddos traffic to the ip of @louis so he stops posting dumb spam
Avatar
+1
Avatar
go ahead my ip is 127.0.0.1
๐Ÿ‘Œ 1
Avatar
Cellegen | HU 2019-11-02 13:04:36Z
@n000b why don't make a bot to unable ddos instead He's too dangerious to be kept alive
14:42
Grk0ne especial haloween epico
Avatar
Nice London
14:47
Spaniard
Avatar
@Newbie @n000b It's much cheaper to attack than to defend. So with 5 โ‚ฌ / month you can easily take down 50 โ‚ฌ / month worth of servers. Since we've had these attacks intermittently for many years now and have been unable to do anything about them, don't expect anything to change.
Avatar
@deen Yea but I mean whats the point, they could just ddos some lowballer company and extort money, instead of just wasting bw
Avatar
heyo anyone here who wanna test my map? its a brutal 2 player ddrace
Avatar
Have any clue whom it might be?
Avatar
"Some men just want to watch the world burn."
16:09
No clue
Avatar
Thought about implementing some protection? Rerouting etc? At this point the extra lagg would be better than not being able to play at all ^^
16:10
Might not be targeting ddnet specifically? Just your host?
Avatar
it is clearly a teeworlds attack
Avatar
You can play btw, you just can't get serverinfo and connecting takes a bit longer
Avatar
theyre trying to down my server too and all of the packets are things that only a tw server would reply to
Avatar
Yea maybe, but hard to find nice servers with maps i havnt finished ^^
Avatar
We get spoofed packets for both serverinfo and joins, so how could we tell whether they come from a real player or are spoofed?
16:12
Hm, actually we could see who contacted info.ddnet.tw and keep that as a whitelist
Avatar
Unique handshakes with mass delay ๐Ÿ˜„
Avatar
u cant tell
16:12
thats the problem lol
Avatar
Or cooldown might be the word for it
Avatar
u have to just find a really optimized way to reply to all of them
Avatar
we don't want to reply to all serverinfo requests since then someone can use us to do a reflection attack on other targets
Avatar
and if they send more requests than the link can handle (they currently arent) then its literally unfixable
Avatar
But they are sending teeworlds packages? Like someone literarily hate the game that much? Is there any new drace mod out trying to remove competition?
Avatar
but yeah, we also have quite cheap servers, so their network link is overloaded atm
Avatar
yes its gie3 / fstd / TKEN packets which are only for teeworlds servers and no
16:13
the network links are not overloaded with the traffic that shows on ddnet.tw/status i assume ?
16:13
noby@teeworlds:~$ vnstat -l Monitoring eth0... (press CTRL-C to stop) rx: 35.00 Mbit/s 67715 p/s tx: 23.60 Mbit/s 29497 p/s
16:13
im getting this the last few days
16:14
nothing even close to affecting the link, but enough to lag an unmodified tw server enough to be unplayable
Avatar
I think they are, it's probably more about the packet number than the bandwidth
Avatar
with modifications it is playable
Avatar
well, I can't ssh into the servers anymore, so that's why I think it's the network
16:14
rip
16:14
so it is more packets/sec than the display on ddnet.tw/status shows?
Avatar
honestly don't know
16:15
that's all that reaches the server
16:16
maybe we have some misfiring iptables rule
Avatar
ddos ddoser
Avatar
it's probably a DoS attack, not distributed btw
16:17
just with spoofed ip addresses
16:17
also, we won't resort to any retaliation, especially illegal ones
Avatar
Ddos ddoser xd
Avatar
reroute to my ip ill tank
Avatar
What's the point
Avatar
one for the team
Avatar
It would still being unavailable to join server then
16:18
But the ddos isn't just to the master list?
16:18
Or is it to the servers?
16:19
we also happen to run one of the masterservers
16:19
there is also a third attack against our map download server
Avatar
Ugh
16:20
I guess this is Vali or another retard this time?
Avatar
no idea, speculating and giving them attention won't help
Avatar
ChillerDragon 2019-11-02 16:20:55Z
@deen whats your max connection limit? When i wasnt able to connect to ssh anymore it was cuz this limit was full: watch -n 1 "cat /proc/sys/net/netfilter/nf_conntrack_max; cat /proc/sys/net/netfilter/nf_conntrack_count; "
Avatar
we'll just sit it out like always. meanwhile players can download all our maps and run private servers that they only share with friends
16:22
@ChillerDragon.* oh, that would explain it
Avatar
ChillerDragon 2019-11-02 16:22:34Z
I cranked that number up to the max. If you have a bit ram left that should work fine. And the attack did not fill up my new max.
Avatar
i was tryna run a server last time
16:22
but it wont work
16:22
i forwarded port 8303
Avatar
well, or you can just share the ip:port of a ddnet server with your friends atm
16:23
udp?
Avatar
some software firewall running?
Avatar
ChillerDragon 2019-11-02 16:23:21Z
oh portforwarding is a mess xd
16:23
i tried that on my homenetwork for years never manged it
Avatar
not sure, idk even what ip to give them
Avatar
ChillerDragon 2019-11-02 16:23:52Z
type "what is my ip" into duckduckgo.com
Avatar
the one tjat shows up when i google whats my ip
16:23
ok
Avatar
ChillerDragon 2019-11-02 16:24:38Z
All these dynamic ips and nat and crap makes it really hard sometimes to make something connect to your home
16:25
i recommend getting a server ๐Ÿ™‚
Avatar
If I get a server and setup the thing, will it count as ddnet part? Like, will records/finish save?
Avatar
[11:17 AM] deen: it's probably a DoS attack, not distributed btw [11:17 AM] deen: just with spoofed ip addresses pretty much every attack in tw works like this yeah
16:26
or at least starts from this for reflection
Avatar
ChillerDragon 2019-11-02 16:27:07Z
Yes you can save records on your own server @Deleted User but those are not connected to the official database
Avatar
@ChillerDragon thanks, that works.
Avatar
ChillerDragon 2019-11-02 16:27:17Z
๐Ÿ™‚
Avatar
i wish they were connected to official
Avatar
Then it isn't worth
Avatar
thru client
16:27
the practice is worth
Avatar
we can't trust records from unofficial servers
Avatar
Yeah but if you get 0 progression people won't join and play with only 1-3 friends.... Not worth at all
Avatar
I'll try to implement something to fix the current attack
16:29
but no promises
Avatar
din noby have a line or 2 to somewhat decrease the load
Avatar
that would be great too
Avatar
Btw, about the maps there's a total of around 1000 right?
16:31
How much data is that? 1-2gb?
Avatar
1806 maps
16:31
All released maps on DDraceNetwork, see also https://ddnet.tw/releases/ and https://maps.ddnet.tw/ - ddnet/ddnet-maps
Avatar
Well, an idiot way to fix that problem of the download servers being ddos would be make ddnet mirror with all maps (since 600mb now days is nothing) ¯\_(ใƒ„)_/¯
Avatar
yeah, the download server attack isn't a problem, just thought I'd mention it
Avatar
this is rly sad
16:37
@deen how do they do it in games like csgo? they are closed souce but im sure they can also find valid packets to spoof, do they handle it by just upgrading the hardware?
16:38
I'm thinking about clients spoofing IP addresses, tricking other clients that they are the server; that sort of stuff. (I don't know much about this, so if this is completely wrong, please correct ...
16:38
hmm not entirely the same case i guess
16:39
the first answer in that SE thread is basically what I'm trying to implement now
Avatar
oh i see
Avatar
well, at least use TLS to check that the ip address is real at least
Avatar
a lot of the attackers are spoofing real player ips
Avatar
please try connecting to ger
16:50
should show up in serverbrowser too
Avatar
it works for me
16:50
all servers
16:50
pepeH 1
Avatar
300iq fix? @deen best boi? Yes.
Avatar
@noby where is your serverinfo optimization code? is it open source, could you PR it to ddnet?
17:14
would be better to have one implementation instead of us doing the same thing over
Avatar
his wasn't that clean and is based on an older version of ddnet
Avatar
well nice that every server are here but none off them are playable ๐Ÿ˜ญ even in gores
Avatar
then its probably your connection
Avatar
it works fine
19:18
Avatar
@Sama yeah you seem to have a problem instead of us
Avatar
instead ?
19:34
its just that i have this bug operator and it doesnt work
19:34
véna is in the same case
Avatar
Why is /load and /save server restricted? Never got behind that
Avatar
there used to be a bug that you could duplicate your saves on other servers
19:37
like way back in 2014
Avatar
Is it still around ?
Avatar
ofc not ๐Ÿ˜„
Avatar
Well then it would be a joy to load saves on other servers again
19:43
Since you know
19:43
When ddos hits
19:43
And you can't play for a week
19:43
Would be chill
Avatar
Otherwise you could load it on multiple servers at the same time
Avatar
thats true... or when they stop hosting certain countries
Avatar
i dont think he means to just enable it again
Avatar
@Ruh u can do /save "SERVER" xxx
Avatar
I think the problem is that the servers are not synced enough so that you could load it in multiple countries
Avatar
ie /save RUS xxx
19:44
and then u can load on rus
Avatar
lol
Avatar
the more you know
Avatar
Basic knowledge is this one tho
19:45
Well if you read #developer
Avatar
i dont use saves that much so..
19:45
I never heard of that
Avatar
ye many ppl dont know it
Avatar
its rly not basic knowledge
Avatar
Doesnt seem to be basic knowledge
Avatar
it should be more highlighted i guess
Avatar
Okay true
19:45
But i suggested that guys with your experience would know
Avatar
I didn't at least
19:46
Nova Shock didn't either
Avatar
would be cool if you could see more in /cmdlist... like "/cmdlist /save" and then it tells you a bit about it
Avatar
/help save
19:46
does exactly what u want
Avatar
so thats what help is for ๐Ÿ˜„
Avatar
Were al lot of reports about /load. Where people saved their saves on ABC instead of ger xD (edited)
Avatar
i thought its to summon mods but its disablked
Avatar
So they were unable to load again
19:47
Same for ger2 when it was gone again
19:48
That was /modhelp which got overabused the day we introduced it
19:48
I still think it is actually a good command, but would only work with account system.
Avatar
Better convert all my saves to FRA to make them never to be seen again
Avatar
Or indeed the france servers
19:49
You can maybe still save them on FRA
19:50
Unable to load them again
Avatar
@Moderator someone moderate Wood Division V
Avatar
it checks for valid server now
Avatar
So /load SA 123 and /load South Africa 123 both require me to be on ger
19:52
Where did I go wrong?
19:52
Ah I see its likely ZAF
19:53
I was thinking but you figured out yourself alreadykek
Avatar
Is there a rcon command I can use to get a player client version ? status doesn't return full client version string
Avatar
ChillerDragon 2019-11-02 22:03:30Z
it does not?
22:03
is that intended? Maybe that should be fixed
Avatar
How to check if a player use Baumalein or whatever bot client ?
Avatar
@Moderator someone blocking part 95.172.92.151:8303
Avatar
ChillerDragon 2019-11-02 22:26:36Z
comin
Avatar
stop the lagg
Avatar
Deen i posted screenshots of@the code in developer channel and yea what learath said is true its not cleaned up and based on ddnet 10.8.6
23:40
@deen i can send it to u in dm if u want whwn i get home anyway
23:40
@mohsen7s baumalein version 708 , other bot clients u have to guess by their mouse inputs usually
Exported 213 message(s)