capnqwest
08-30-2005, 10:57 AM
I host a couple of MT sites for customers one here at PVPS and another at a terrible host and have been getting slammed with mt-comment.cgi spam. The process will spiral out of control until the box almost shuts down. My only option has been to chmod 000 mt-comments.cgi. Attempts to rename it were useless as that script gets detected in about 30 seconds.
When doing a TCPdump, hundreds of hosts from all over the world are calling it so putting the hosts in iptables wouldn't work. My bandwidth is through the roof.
Any suggestions?
http://www.raincitystory.com/images/mtcomments_flood.jpg
I'm going to ask the folks at MoveableType but I wanted to hear what you guys thought from a server perspective.
When doing a TCPdump, hundreds of hosts from all over the world are calling it so putting the hosts in iptables wouldn't work. My bandwidth is through the roof.
Any suggestions?
http://www.raincitystory.com/images/mtcomments_flood.jpg
I'm going to ask the folks at MoveableType but I wanted to hear what you guys thought from a server perspective.