A client of mine has a website on a shared hosting account, and one of the other accounts on that server was targeted by a DDOS attack, which of course brought all of the websites on that server down. We’re talking about moving to a dedicated server or VPS to help mitigate this in the future. I am fully aware that this won’t prevent DDOS attacks from ever happening, but being on their own server will at least reduce the risk because they won’t be caught in someone else’s collateral damage (as much?).
But I’m wondering if being on a VPS will have any effect at all in this regard — yes the system is isolated from other systems at the software level, but my understanding is that there are still several virtual machines sharing one physical machine (and hence one physical network connection). My question is: does the quasi-isolation that a VPS offers provide any kind of benefit in terms of reducing the chances of being caught up in someone else’s DDOS attack, or do you only get that kind of benefit from being on a separate physical server?
The risks will be slightly reduced, but not eliminated obviously.
In general, there will be fewer customers on a VPS host than reside on a shared webserver, making fewer potential targets. Of course this is all completely theoretical, and there’s literally nothing that can stop a determined DDoS attack short of having a massive infrastructure scaled like say Google or Facebook.
Leave a comment
- What is the easiest way to upgrade my existing Perl 5.14 to Perl 5.16 on FreeBSD 9 using the ports system?
- Know if mysql has done its job
- Redirect https .com to https .co.uk without a valid SSL cert on .com without DNS change
- Why is it a bad idea to use customer email as from address
- 100% packets dropped on first RX queue on 3/5 raid6 iSCSI NAS devices using intel igb (resolved)