Inquiry about a possible DDoS case

Hello everyone. I have received a communication from my ISP regarding the IP where I have a Middle Relay and a Bridge, informing me that this IP is being used for a DDoS attack. I have checked the servers and everything is correct; there are no strange processes running. I have run various tools and everything seems to be in order. Therefore, has anyone encountered a similar case? Or even better, could someone be using Tor to carry out DDoS attacks? I am a bit puzzled by this situation. Thanks for your time King regards JAC -- Sent with https://mailfence.com Secure and private email

Is your server running a DNS server that's open to the internet on port 53? On 6/11/24 09:25, Jose A via tor-relays wrote:
Hello everyone.
I have received a communication from my ISP regarding the IP where I have a Middle Relay and a Bridge, informing me that this IP is being used for a DDoS attack.
I have checked the servers and everything is correct; there are no strange processes running. I have run various tools and everything seems to be in order.
Therefore, has anyone encountered a similar case? Or even better, could someone be using Tor to carry out DDoS attacks?
I am a bit puzzled by this situation.
Thanks for your time
King regards
JAC
-- Sent with https://mailfence.com Secure and private email
_______________________________________________ tor-relays mailing list -- tor-relays@lists.torproject.org To unsubscribe send an email to tor-relays-leave@lists.torproject.org

Hi, Yes, there is a DNS server but port 53 is not open to the internet, only locally. King regards On Nov 6, 2024 at 9:17 PM, tor-relays+tor-relays@queer.cat wrote:Is your server running a DNS server that's open to the internet on port 53? On 6/11/24 09:25, Jose A via tor-relays wrote:
Hello everyone.
I have received a communication from my ISP regarding the IP where I have a Middle Relay and a Bridge, informing me that this IP is being used for a DDoS attack.
I have checked the servers and everything is correct; there are no strange processes running. I have run various tools and everything seems to be in order.
Therefore, has anyone encountered a similar case? Or even better, could someone be using Tor to carry out DDoS attacks?
I am a bit puzzled by this situation.
Thanks for your time
King regards
JAC
-- Sent with https://mailfence.com Secure and private email
_______________________________________________ tor-relays mailing list -- tor-relays@lists.torproject.org To unsubscribe send an email to tor-relays-leave@lists.torproject.org
_______________________________________________ tor-relays mailing list -- tor-relays@lists.torproject.org To unsubscribe send an email to tor-relays-leave@lists.torproject.org -- Sent with https://mailfence.com Secure and private email
participants (2)
-
Jose A
-
tor-relays+tor-relays@queer.cat