I have had the same today.
Once I left it in this state and next day got bad exit flag, so not sure what hoovering up actually does, the embarrassing flag took a long time to go. So when I get those notices I shut tor down as soon as I can, that seems to stop what they see as an attack in short order, you get a nice email message in minutes that you are out of mitigation, and restart.
Gerry
From: tor-relays tor-relays-bounces@lists.torproject.org On Behalf Of Keifer Bly Sent: 12 November 2020 18:53 To: tor-relays@lists.torproject.org Subject: [tor-relays] So my relay is apparently being attacked
Hi,
So twice this week I've gotten this email from OVH:
Dear Customer,
We have just detected an attack on IP address 51.68.197.220.
In order to protect your infrastructure, we vacuumed up your traffic onto our mitigation infrastructure.
The entire attack will thus be filtered by our infrastructure, and only legitimate traffic will reach your servers.
At the end of the attack, your infrastructure will be immediately withdrawn from the mitigation.
For more information on the OVH mitigation infrastructure: http://www.ovh.com/world/anti-ddos/
Regarding the relay at https://metrics.torproject.org/rs.html#details/79E3B585803DE805CCBC00C1EF36B...
I am wondering, are relays being ddosed a normal thing? Thank you.
--Keifer