you are viewing a single comment's thread.

view the rest of the comments →

[–]gretathroatborg 3 insightful - 2 fun3 insightful - 1 fun4 insightful - 2 fun -  (2 children)

any way to have the main server fully proxied? meaning no clients connecting directly to it for anything. then it can run from a private vlan on non-routable address and the servers that proxy to it (for media and 'most everything') protect it from being open to ddos attacks. how do you mitigate ddos? if not in the networking gear/upstream then the proxy servers will do double duty of regular server job and also rejecting ddos traffic with dynamically updated firewall rules

[–]magnora7[S] 3 insightful - 1 fun3 insightful - 0 fun4 insightful - 1 fun -  (1 child)

This is basically what the new setup will be, more or less

[–]gretathroatborg 3 insightful - 2 fun3 insightful - 1 fun4 insightful - 2 fun -  (0 children)

good stuff. if u run into problems in the future pm me