@luc They are distributing requests over multiple /18 to /20 networks, each single IP having only few requests so they are not detected by our automated rate-limiting.
Top-level
@luc They are distributing requests over multiple /18 to /20 networks, each single IP having only few requests so they are not detected by our automated rate-limiting. 2 comments
|
@luc And yes, we are blocking complete IP ranges according to whois data, but Huaweicloud has a lot of them. And we are not yet sure if all of them are malicious (could be a single customer who ordered much cloud computing)