I have removed the ClaudeBot block from nginx, just for testing my new measures really..
I am not really sure if the bot is still trying to access the server. This is more of a test for my rate limits and other measures more than anything.
Of course if the server starts running slow I will enable the block again. But the server should allow "some abuse" before it starts banning IPs automatically now. I'm more interested in testing it all out more than anything at this point.
ClaudeBot server attack.
-
exxos
- Site Admin

- Posts: 28344
- Joined: 16 Aug 2017 23:19
- Location: UK
-
spinecki
- Posts: 1
- Joined: 14 May 2024 21:41
Re: ClaudeBot server attack.
Hi, i got to your forums looking for information on claudebot... anyway I also am owner of several phpBB (go phpBB!) forums. I had an ultraheavy traffic problem at the end of April as well. I went for cloudflare, a free plan of course. There is a very easy way to configure it, so that only good bots go through (+they optimize traffic/bandwidth on the fly). Anyway, I am happy with it, it does its job (although I had to learn how to configure it, because at first I got like -90% of my revenue from adsense, because of bad configuration ;) - few lessons learned, so it means I can help!).exxos wrote: 27 Apr 2024 20:14I did look at ddos protection but it's another £5:a month. cloudflare I think we're also blocking my server like Microsoft are.sandord wrote: 27 Apr 2024 17:37 Have you considered using CloudFlare to guard against these kinds of attacks?
I'm sill thinking about it all.
You do not have the required permissions to view the files attached to this post.
-
HigashiJun
- Posts: 2381
- Joined: 19 Jun 2020 07:21
- Location: Tokyo
Re: ClaudeBot server attack.
I have no access to the forum since Monday 13th, just a black page on Firefox saying the site is not available... :(
Access from my workplace works normally.
Is this related to the Claudebot ?
Access from my workplace works normally.
Is this related to the Claudebot ?
-
exxos
- Site Admin

- Posts: 28344
- Joined: 16 Aug 2017 23:19
- Location: UK
Re: ClaudeBot server attack.
Your IP likely got banned due to rate limits. I'd need your IP to check.HigashiJun wrote: 15 May 2024 07:15 I have no access to the forum since Monday 13th, just a black page on Firefox saying the site is not available... :(
Access from my workplace works normally.
Is this related to the Claudebot ?
-
exxos
- Site Admin

- Posts: 28344
- Joined: 16 Aug 2017 23:19
- Location: UK
Re: ClaudeBot server attack.
Thanks . Though I've had no end of problems with cloud flare blocking legitimate traffic. It may be users config issues, but I'd rather avoid using it. I've wrote lots about it all already.spinecki wrote: 14 May 2024 21:53 Hi, i got to your forums looking for information on claudebot... anyway I also am owner of several phpBB (go phpBB!) forums. I had an ultraheavy traffic problem at the end of April as well. I went for cloudflare, a free plan of course. There is a very easy way to configure it, so that only good bots go through (+they optimize traffic/bandwidth on the fly).
The ddos type "attacks" should be handled by nginx now. Basically all is welcome as long as the server is not abused with 900+ IPs opening up 20+ connections per second like that bot did. Such traffic gets a 30 day ban now. So I should be able to forget about the whole thing now.
-
HigashiJun
- Posts: 2381
- Joined: 19 Jun 2020 07:21
- Location: Tokyo
Re: ClaudeBot server attack.
Ok, I will send it tomorrow as I am still at work now...exxos wrote: 15 May 2024 07:17 Your IP likely got banned due to rate limits. I'd need your IP to check.
Thanks.
-
exxos
- Site Admin

- Posts: 28344
- Joined: 16 Aug 2017 23:19
- Location: UK
Re: ClaudeBot server attack.
It looks like it was a rate limit ban. That would need over 600 connection requests at once. I think possibly if trying to load forum and the store at the same time could have tipped it over the edge :( I have upped the limits a fair bit again. I also changed the ban time to 2 days.
I think possibly what could be a possible trigger is if "Harry the hamster" is showing during the store load is not immediately appearing as expected. This is probably down to the rate limits kicking in and causing images in the store to load slowly. In which case Harry could be displaying for 20-30 before the store actually appears. Closing the store and trying to reload it again will not solve that problem and likely lead to a ban because of a extra 200+ connection requests. But really, this "trigger" should never really happen anyway.
But if anyone does see the something off, people will have to tell me. Try and remember exactly what you was doing at the time.
I think possibly what could be a possible trigger is if "Harry the hamster" is showing during the store load is not immediately appearing as expected. This is probably down to the rate limits kicking in and causing images in the store to load slowly. In which case Harry could be displaying for 20-30 before the store actually appears. Closing the store and trying to reload it again will not solve that problem and likely lead to a ban because of a extra 200+ connection requests. But really, this "trigger" should never really happen anyway.
But if anyone does see the something off, people will have to tell me. Try and remember exactly what you was doing at the time.
-
HigashiJun
- Posts: 2381
- Joined: 19 Jun 2020 07:21
- Location: Tokyo
Re: ClaudeBot server attack.
It seems I'm banned again...
:cry:
Same situation as previously: I wanted to check the store and Harry the Hamster was spinning its wheel indefinitely. I then closed the window and my browser, but when I tried to access the exxos forum again, I was greeted by a black screen...
The only difference this time is that I couldn't access the store at all, while last time I was already in.
Strange that this issue doesn't happen from my work place.
:cry:
Same situation as previously: I wanted to check the store and Harry the Hamster was spinning its wheel indefinitely. I then closed the window and my browser, but when I tried to access the exxos forum again, I was greeted by a black screen...
The only difference this time is that I couldn't access the store at all, while last time I was already in.
Strange that this issue doesn't happen from my work place.
-
exxos
- Site Admin

- Posts: 28344
- Joined: 16 Aug 2017 23:19
- Location: UK
Re: ClaudeBot server attack.
I'll take a look at the logs in the morning..
-
HigashiJun
- Posts: 2381
- Joined: 19 Jun 2020 07:21
- Location: Tokyo
Re: ClaudeBot server attack.
Thanks !
Who is online
Users browsing this forum: ClaudeBot and 8 guests