How do I stop someone from saturating my line & wasting CPU cycles
        Posted  
        
            by 
                JoshRibs
            
        on Server Fault
        
        See other posts from Server Fault
        
            or by JoshRibs
        
        
        
        Published on 2013-10-30T18:47:48Z
        Indexed on 
            2013/10/31
            9:57 UTC
        
        
        Read the original article
        Hit count: 296
        
My web host shows inbound & outbound traffic with mrtg. I have a steady 3.5mbps inbound traffic from Nigeria. Even assuming the source IPs & destination ports are blocked with Iptables & verifying nothing is listening on those ports, will the traffic still always pass through the switch & "get" to my server (where my server wastes CPU cycles "dropping" the packets)? Assuming I was setup with a hardware firewall, the traffic would still show in mrtg assuming the firewall is behind the switch?
So is there any way to stop someone from saturating your 100mbps line, if they also have a 100mbps line? Other than filing an abuse complaint with the kind folks in Nigeria?
© Server Fault or respective owner