{"id":645014,"date":"2013-03-03T10:33:22","date_gmt":"2013-03-03T15:33:22","guid":{"rendered":"http:\/\/gigaom.com\/?p=616266"},"modified":"2013-03-03T10:33:22","modified_gmt":"2013-03-03T15:33:22","slug":"cloudflare-goes-down-cites-router-issue-in-ddos-attack","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/645014","title":{"rendered":"CloudFlare goes down, cites router issue in DDoS attack"},"content":{"rendered":"<p>CloudFlare&#8217;s <a href=\"http:\/\/gigaom.com\/2011\/07\/12\/cloudflare-funding\/\">web security service<\/a> went down for about an hour starting at 2:47 PDT Sunday morning, taking its customers down with it. The service was back up at 3:49 PDT, according to a <a href=\"http:\/\/blog.cloudflare.com\/todays-outage-post-mortem-82515\">post-mortem<\/a>.\u00a0CloudFlare attributed the outage to a system-wide failure of its Juniper edge routers that started after the company tried to prevent a DDoS attack on one of its customers.<\/p>\n<p>Affected sites include Wikileaks, 4chan and others according to this <a href=\"http:\/\/techcrunch.com\/2013\/03\/03\/cloudflare-is-down-due-to-dns-outage-taking-down-785000-websites-including-4chan-wikileaks-metallica-com\/\"><em>Techcrunch<\/em> report.<\/a><\/p>\n<p>One reason CloudFlare opts for Juniper is the latter&#8217;s support for the <a href=\"http:\/\/www.slideshare.net\/sfouant\/an-introduction-to-bgp-flow-spec\">Flowspec<\/a> protocol which enables customers to propagate router rules across a large number of routers fast, according to the company post. This comes in handy because CloudFlare is always updating rules to combat ever-changing attacks and to re-route traffic as needed to optimize performance.<\/p>\n<p>This\u00a0morning CloudFlare detected a DDoS attack on one of its customers and its attack profiler ascertained the offending packets were\u00a0\u00a0between\u00a099,971 and 99,985 bytes.<\/p>\n<p>That attack profile was sent out to Flowspec to stop the spread of attacks. From the post mortem:<\/p>\n<blockquote id=\"quote-flowspec-accepted-th\">\n<p>&#8220;Flowspec accepted the rule and relayed it to our edge network. What should have happened is that no packet should have matched that rule because no packet was actually that large. What happened instead is that the routers encountered the rule and then proceeded to consume all their RAM until they crashed.&#8221;<\/p>\n<\/blockquote>\n<p>Service was restored after about an hour, although CloudFlare said it continues to examine the issue and has contacted Juniper to see if there is a known bug involved or the problem is unique to CloudFlare&#8217;s implementation.<\/p>\n<div id=\"attachment_616300\" class=\"wp-caption aligncenter\" style=\"width: 718px\"><a href=\"http:\/\/gigaom.com\/2013\/03\/03\/cloudflare-goes-down-cites-dns-outage\/cedexiscloudflare\/\" rel=\"attachment wp-att-616300\"><img loading=\"lazy\" decoding=\"async\" alt=\"Cedexis' Radar view of CloudFlare outage.\" src=\"http:\/\/gigaom2.files.wordpress.com\/2013\/03\/cedexiscloudflare.jpg?w=708&#038;h=346\" width=\"708\" height=\"346\" class=\"size-full wp-image-616300\" \/><\/a><\/p>\n<p class=\"wp-caption-text\">Cedexis&#8217; Radar view of CloudFlare outage.<\/p>\n<\/div>\n<p>Given that the <a href=\"http:\/\/www.bankinfosecurity.com\/ddos-attacks-on-banks-resume-a-5541\">number of DDoS attacks<\/a> is on the rise, web sites had better gird themselves and hope their security vendors are taking proactive steps to keep ahead of the problem.<\/p>\n<p> <img loading=\"lazy\" decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/stats.wordpress.com\/b.gif?host=gigaom.com&#038;blog=14960843&#038;%23038;post=616266&#038;%23038;subd=gigaom2&#038;%23038;ref=&#038;%23038;feed=1\" width=\"1\" height=\"1\" \/><\/p>\n<p><a href=\"http:\/\/pubads.g.doubleclick.net\/gampad\/jump?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=356973\"><img decoding=\"async\" src=\"http:\/\/pubads.g.doubleclick.net\/gampad\/ad?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=356973\" \/><\/a><\/p>\n<p><strong>Related research and analysis from GigaOM Pro:<\/strong><br \/>Subscriber content. <a href=\"http:\/\/pro.gigaom.com\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=616266+cloudflare-goes-down-cites-dns-outage&#038;utm_content=gigabarb\">Sign up for a free trial<\/a>.<\/p>\n<ul>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/11\/an-overview-of-the-software-defined-networking-market\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=616266+cloudflare-goes-down-cites-dns-outage&#038;utm_content=gigabarb\">The promise of SDNs in the enterprise<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/08\/software-defined-networking-the-third-epoch-in-computer-networking\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=616266+cloudflare-goes-down-cites-dns-outage&#038;utm_content=gigabarb\">The promise of software-defined networking<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/06\/cloud-computing-infrastructure-2012-and-beyond\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=616266+cloudflare-goes-down-cites-dns-outage&#038;utm_content=gigabarb\">Cloud computing infrastructure: 2012 and beyond<\/a><\/li>\n<\/ul>\n<p><img width='1' height='1' src='http:\/\/gigaom.feedsportal.com\/c\/34996\/f\/646446\/s\/29273e9a\/mf.gif' border='0'\/><\/p>\n<div class='mf-viral'>\n<table border='0'>\n<tr>\n<td valign='middle'><a href=\"http:\/\/share.feedsportal.com\/viral\/sendEmail.cfm?lang=en&#038;title=CloudFlare+goes+down%2C+cites+router+issue+in+DDoS+attack&#038;link=http%3A%2F%2Fgigaom.com%2F2013%2F03%2F03%2Fcloudflare-goes-down-cites-dns-outage%2F\" ><img decoding=\"async\" src=\"http:\/\/res3.feedsportal.com\/images\/emailthis2.gif\" border=\"0\" \/><\/a><\/td>\n<td valign='middle'><a href=\"http:\/\/res.feedsportal.com\/viral\/bookmark.cfm?title=CloudFlare+goes+down%2C+cites+router+issue+in+DDoS+attack&#038;link=http%3A%2F%2Fgigaom.com%2F2013%2F03%2F03%2Fcloudflare-goes-down-cites-dns-outage%2F\" ><img decoding=\"async\" src=\"http:\/\/res3.feedsportal.com\/images\/bookmark.gif\" border=\"0\" \/><\/a><\/td>\n<\/tr>\n<\/table>\n<\/div>\n<p><a href=\"http:\/\/da.feedsportal.com\/r\/159489858910\/u\/49\/f\/646446\/c\/34996\/s\/29273e9a\/a2.htm\"><img decoding=\"async\" src=\"http:\/\/da.feedsportal.com\/r\/159489858910\/u\/49\/f\/646446\/c\/34996\/s\/29273e9a\/a2.img\" border=\"0\"\/><\/a><img loading=\"lazy\" decoding=\"async\" width=\"1\" height=\"1\" src=\"http:\/\/pi.feedsportal.com\/r\/159489858910\/u\/49\/f\/646446\/c\/34996\/s\/29273e9a\/a2t.img\" border=\"0\"\/><\/p>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?a=14YWFnWL8w0:oKTX3GUUseY:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/OmMalik\/~4\/14YWFnWL8w0\" height=\"1\" width=\"1\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>CloudFlare&#8217;s web security service went down for about an hour starting at 2:47 PDT Sunday morning, taking its customers down with it. The service was back up at 3:49 PDT, according to a post-mortem.\u00a0CloudFlare attributed the outage to a system-wide failure of its Juniper edge routers that started after the company tried to prevent a [&hellip;]<\/p>\n","protected":false},"author":7419,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-645014","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/645014","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/7419"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=645014"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/645014\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=645014"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=645014"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=645014"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}