Repo access problems
Torbjörn Granlund
tg at gmplib.org
Wed May 7 23:56:43 CEST 2025
The GMP repo has become a popular target for DDoS attacks. I have
countered that with quite crude countermeasures, limited in
sophistication as I don't have much time for maintaining the Internet
facing systems.
I hope to find the time to make it slightly more sophisticated at some
point.
(The attacks have been of two sorts. One is from residential
connections, predominantly in the US, and that has been ongoing for
almost a year now. The other is from rogue ISPs and (mainly) asian
cloud providers. The latter allows us to block large IP ranges. And
then we have the infamous attack from Microsoft's gitlab last year,
which would have required GMP to have a 100+ core machine for just the
CPU load they caused.)
If you tell me which exact IP address you use, I can white list it.
Nominally I'd guess that something else in my org is abusing gmplib.org that I'm
not aware of. But the fact that another machine behind the same NAT doesn't seem
to be having the same problem sort of shoots down that hypothesis.
That doesn't make sense; NAT would make these requests appear to come
from the same IP asdress and thus both would be blocked or neither would
be blocked.
--
Torbjörn
Please encrypt, key id 0xC8601622
More information about the gmp-discuss
mailing list