FAForever Forums
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Groups
    • Login
    The current pre-release of the client ("pioneer" in the version) is only compatible to itself. So you can only play with other testers. Please be aware!

    DDoS and now something new again?

    Scheduled Pinned Locked Moved General Discussion
    69 Posts 28 Posters 2.3k Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N Offline
      Nuggets FAF Association Board
      last edited by

      I was not aware that public ips can be seen in any game. Since i now know this i will never play faf without vpn again because this is an absolute disaster for someone like me who hosts his own stuff

      1 Reply Last reply Reply Quote 0
      • JipJ Offline
        Jip @Brutus5000
        last edited by

        @Nuggets As far as I am aware, all games that use peer to peer will in general expose your IP. Supreme Commander is not any different here. There's an interesting support ticket about the topic from Steam Support:

        • https://help.steampowered.com/en/faqs/view/1433-AD20-F11D-B71E

        The solution is to work via relays. Which is what Brutus describes here:

        @Brutus5000 said in DDoS and now something new again?:

        The ice adapter can do that in theory. This is called using a relay server. We used to run our own but they get killed by DDoS too. Now we are running the relay servers at a 3rd party provider but they are very expensive. so we cannot allow everybody to use it just to hide their ips.

        We tried a cheaper provider but it doesn't work with the current ice adapter. So we're trying to rewrite it, but it doesn't work reliably beyond 1v1

        We're not there yet though. And we could really use the help of people with the right expertise to investigate it further.

        A work of art is never finished, merely abandoned

        1 Reply Last reply Reply Quote 0
        • N Offline
          Nuggets FAF Association Board
          last edited by

          I didnt formulate myself correctly. I was aware that you see ips of others while ingame with them. However, these attacks happened by people outside of these games without ever having connected to the lobby

          1 Reply Last reply Reply Quote 0
          • K Offline
            Kilatamoro
            last edited by

            Time to take out my "The end is near" sign. This shit is legit scary. I am not logging in until this is over.

            1 Reply Last reply Reply Quote 0
            • ZeldafanboyZ Offline
              Zeldafanboy
              last edited by

              Anecdotally, after mucking around in 2 lobbies that instantly crashed for 40 mins, I went to play Starcraft 2 ladder and got 2 disconnects that forced me to forfeit a few hours apart, which is very rare (2 in one day is unheard of). So yeah I would not play custom lobbies without unplugging your router for 10 mins afterward if you play other competitive games like Starcraft or Counter Strike because until your IP changes it's gonna get hit.

              Really unfortunate stuff, although I can't say I'm surprised people this manchildtarded lurk among the playerbase.

              put the xbox units in the game pls u_u

              1 Reply Last reply Reply Quote 0
              • H Offline
                hulgarth
                last edited by

                Same thing here. Thought my pc was broken. I even timed out connecting to this forum. AFter exiting the game nothing would load until I ran a network test and the Nvidia overlay popped up like id just entered a game again and my internet suddenly works perfectly.

                1 Reply Last reply Reply Quote 0
                • xxx_LenKing_xxxX Offline
                  xxx_LenKing_xxx
                  last edited by

                  SO how GAF makes their new Fire adapter? Does they spend so much money for this? Do faf realy cant spend donations to save server? Im sure it shouldnt cost so much money anyway, it cant be superexpensive just to fix this fuckn ip leak. Do this or faf dies, dont u understand? Let's just wait for it to go away on its own as always.

                  LimeZ3_L P 2 Replies Last reply Reply Quote -1
                  • LimeZ3_L Offline
                    LimeZ3_ @LimeZ3_
                    last edited by

                    I checked with my internet provider
                    They said "your IP is dynamic and it changes automatically once every 24 h"
                    There is no way I can change my IP myself, outside of that

                    Make t3 mex, not war

                    1 Reply Last reply Reply Quote 0
                    • LimeZ3_L Offline
                      LimeZ3_ @xxx_LenKing_xxx
                      last edited by

                      @Lenkin
                      Just a "what if"
                      What if GAF has all the same vulnerabilities, but just doesn't get ddosed?
                      I can only guess the reasons why.

                      Make t3 mex, not war

                      DeribusD 1 Reply Last reply Reply Quote 0
                      • LimeZ3_L Offline
                        LimeZ3_ @Defiant
                        last edited by

                        @Defiant university degree, dutch version

                        Make t3 mex, not war

                        1 Reply Last reply Reply Quote 1
                        • DeribusD Offline
                          Deribus Moderator @LimeZ3_
                          last edited by

                          @LimeZ3_ said in DDoS and now something new again?:

                          @Lenkin
                          Just a "what if"
                          What if GAF has all the same vulnerabilities, but just doesn't get ddosed?
                          I can only guess the reasons why.

                          My understanding is GAF does get DDOSed, but it routes all its connections through a central server so it's much less of a problem. It can do that because it has MUCH fewer players than FAF does

                          1 Reply Last reply Reply Quote 1
                          • S Offline
                            Sturmgewehr
                            last edited by

                            @Brutus5000 Is it possible to have a client update for the weekend where all connections go through relay only, to see what happens?
                            Better / worse / the same.

                            Currently completely unplayable.
                            Unless you are already working on a good solution, I don't see any other plan that can be implemented quickly to possibly improve the situation.

                            At the very least, further steps could then be planned based on the knowledge gained.

                            Brutus5000B 1 Reply Last reply Reply Quote 0
                            • P Offline
                              Prophet- @xxx_LenKing_xxx
                              last edited by

                              @Lenkin is GAF getting DDossed too? i

                              1 Reply Last reply Reply Quote 0
                              • GiebmasseG Offline
                                Giebmasse Team Lead FAF Association Board Moderator Admin
                                last edited by

                                https://discord.com/channels/197033481883222026/197078254681587712/1413952423827079249

                                1 Reply Last reply Reply Quote 0
                                • Brutus5000B Offline
                                  Brutus5000 FAF Server Admin @Sturmgewehr
                                  last edited by

                                  @Sturmgewehr said in DDoS and now something new again?:

                                  @Brutus5000 Is it possible to have a client update for the weekend where all connections go through relay only, to see what happens?
                                  Better / worse / the same.

                                  Currently completely unplayable.
                                  Unless you are already working on a good solution, I don't see any other plan that can be implemented quickly to possibly improve the situation.

                                  At the very least, further steps could then be planned based on the knowledge gained.

                                  Yes, this is what we did for now. If this solves it, we'll work on more cost-effective solutions to keep it like that.

                                  He said, "I've been to the year 3000
                                  Not much has changed, but they live underwater
                                  And your great-great-great-granddaughter
                                  Is playin' FAF, playin' FAF"

                                  1 Reply Last reply Reply Quote 0
                                  • G Offline
                                    Gibsaw
                                    last edited by

                                    Well, whatever has been done. I can no longer connect AT ALL. Goes straight from "checking" to "disconnected" for all players.

                                    So how do I help? Logs? If so, where do I upload them?

                                    1 Reply Last reply Reply Quote 0
                                    • G Offline
                                      Gibsaw
                                      last edited by

                                      So it seems... I can connect to other Australia or NZ players, or I can connect to US players with a US VPN... but it definitely seems AUS/NZ has been isolated.

                                      S 1 Reply Last reply Reply Quote 1
                                      • JipJ Jip referenced this topic on
                                      • S Offline
                                        Sturmgewehr @Gibsaw
                                        last edited by

                                        Attack vectors DNSFRAGMENT.jpg

                                        Since I play via my own vpn, i can see what is attacking me when I play faf.

                                        Attack type: UDP DNS Fragment Flood
                                        Source ports: Variable high ports (commonly around 40000)
                                        Destination port: UDP 53 (DNS)
                                        Always relatively short (but enough to ruin a match).

                                        And no, nothing else runs on this server, and I only ever use it when I play faf.

                                        1 Reply Last reply Reply Quote 5

                                        Hello! It looks like you're interested in this conversation, but you don't have an account yet.

                                        Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

                                        With your input, this post could be even better 💗

                                        Register Login
                                        • First post
                                          Last post