Pages: [1]
horst1981
BAM!ID: 197396
Joined: 2015-11-14
Posts: 4
Credits: 262,458,264
World-rank: 4,201

2019-03-08 03:26:14

I can't see data from any user, team or country. Click on any item and the display is what the home page looks like. This situation not only I appeared here, other friends also encountered, I hope the administrator as soon as possible to pay attention. (The authorized item needs to be displayed and the corresponding switch is turned on.)

(For my friend freestman.)
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-03-08 11:54:14

From your IP I see you are from China. I have indeed blocked access to the statistics for China because a large number of Chinese IP addresses from different blocks were scraping the statistics (clearly sequential reading) and overloading the server causing delays in load times and stats updates. There was no other way to stop the attack because there was no common identifier across the different IP's.

I'll remove the block but will reinstate it if the issue returns!
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
horst1981
BAM!ID: 197396
Joined: 2015-11-14
Posts: 4
Credits: 262,458,264
World-rank: 4,201

2019-03-09 12:12:06

[BOINCstats Willy wrote:

From your IP I see you are from China. I have indeed blocked access to the statistics for China because a large number of Chinese IP addresses from different blocks were scraping the statistics (clearly sequential reading) and overloading the server causing delays in load times and stats updates. There was no other way to stop the attack because there was no common identifier across the different IP's.

I'll remove the block but will reinstate it if the issue returns!


Roger that.Thank you.
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-14 07:52:53

Again IP blocks from China were massively scraping the site so I blocked China again until I find another solution to block scrapers.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-15 07:50:43

I Implemented ShieldOn to prevent massive scraping of the stats pages.

I may have to tinker with the settings so if anybody runs into too many "confirm you are human" pages then let me know.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-16 07:42:43
last modified: 2019-06-16 07:42:58

I don't know why but someone/something from China insists on hammering BOINCstats from hundreds of different IP addresses. ShieldOn has already blocked over 4000 IP's and I have added several large subnets from having access to the site.

I'm sorry if you get in the crossfire of this and get locked out of the stats but if I do nothing then BOINCstats goes down every couple of minutes because the database can't handle the load.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
James Bradshaw
BAM!ID: 202077
Joined: 2016-03-05
Posts: 17
Credits: 111,053,122
World-rank: 7,669

2019-06-16 15:23:07

Other than gumming up the works are there security issues involved that could impact on our individual accounts?
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-16 15:45:30

James Bradshaw wrote:

Other than gumming up the works are there security issues involved that could impact on our individual accounts?

No risks, just a slow website.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
horst1981
BAM!ID: 197396
Joined: 2015-11-14
Posts: 4
Credits: 262,458,264
World-rank: 4,201

2019-06-17 03:26:03

Because of the content censorship firewall, there is no access to the human identification component provided by Google in China. As a result, the data of this website can not be accessed by real people in China now.(by freestman)
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-17 06:58:03

horst1981 wrote:

Because of the content censorship firewall, there is no access to the human identification component provided by Google in China. As a result, the data of this website can not be accessed by real people in China now.(by freestman)

Well that s***s, however I have to do something to prevent the site from going offline all the time. I'm trying to track down the subnets from which the idiots keep hammering the site however when I'm busy with my personal life I don't always have time for that so I have to use automated measures.

I'll add another Captcha when I have time.

Sidenote: the IP from where you post is not blacklisted.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-06-17 09:35:39

I changed the Captcha to something else for China residents.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
[BOINCstats] Willy
 
Forum moderator - Administrator - Developer - Tester - Translator
BAM!ID: 1
Joined: 2006-01-09
Posts: 9219
Credits: 349,822,518
World-rank: 3,413

2019-09-08 17:21:33

So, once again dozens of IP addresses from China are hammering the site by requesting hundreds of stats pages in sequence so I again blocked access to the stats for all of China.
Please do not PM, IM or email me for support (they will go unread/ignored). Use the forum for support.
freestman
BAM!ID: 34751
Joined: 2007-09-17
Posts: 1
Credits: 1,921,442,787
World-rank: 976

2019-10-08 22:59:43

Can the logged-in user be accessed normally?
ZeroAurora
 
BAM!ID: 233038
Joined: 2019-07-22
Posts: 5
Credits: 223,377
World-rank: 451,694

2020-02-05 13:12:22

freestman wrote:

Can the logged-in user be accessed normally?

+1. Is it possible to open the access of stats pages to registered users in China?
gemini8
BAM!ID: 101557
Joined: 2011-06-14
Posts: 35
Credits: 589,546,075
World-rank: 2,312

2020-05-16 07:25:35

[BOINCstats Willy wrote:

I Implemented ShieldOn to prevent massive scraping of the stats pages.

I may have to tinker with the settings so if anybody runs into too many "confirm you are human" pages then let me know.

Hi Willy.
I appreciate the measures you're taking to keep Boincstats online. ;-)
However, I have questions about ShieldOn:
Should opening four tabs in Firefox with Boincstats content be enough to trigger this?
They are my personal project list, team ranking, host list, and team account project list.
How long does a block last if I do no captcha?
I wouldn't mind doing captcha's from time to time, but I have to fiddle with my Firefox security each time I have to access G00gle content.
Thank you!
- - - - - - - - - - -
Greetings, Jens
Dotsch
Tester
BAM!ID: 833
Joined: 2006-05-27
Posts: 74
Credits: 3,084,780
World-rank: 101,624

2020-05-24 11:41:53
last modified: 2020-05-24 11:50:02

[BOINCstats Willy wrote:

So, once again dozens of IP addresses from China are hammering the site by requesting hundreds of stats pages in sequence so I again blocked access to the stats for all of China.

Evtentually it helps to add some block list with hacking + attacking IPs to the web server or your firewall? - I have made good expiriance on my firewall and web servers.
FireHol is a collection site for several IP based blocking lists: list https://iplists.firehol.org/


Edit:
For example Project Honeypot php_* and Cleantalk, StopForumSpam could help.
Additionaly: All Emerging Threads, AlienFault, DShield, SpamHaus DROP are good lists general starting to block attackers.
Pages: [1]

Index :: BOINCstats Bug Report :: Does the administrator prevent certain IP segment users from accessing site data?
Reason: