KVM anti abuse how do you counter abuse with kvm users?

Discussion in 'Operating a Hosting Business' started by sz1hosting, Jun 24, 2014.

  1. sz1hosting

    sz1hosting New Member

    21
    2
    Mar 31, 2014
    Hello, i was wondering what other providers methods are for counter acting kvm abuse, we have the mail side of things sorted but other forms of abuse has to be checked manaully is there any kvm anti abuse scripts available? What do you do to stop abuse on kvm vps servers? Please provide any feedback you can and tips and information that is relevant to the title.

    Thank you for reading and replying if you do!
     
    NilsX1337 likes this.
  2. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    You will have to install some ssh keys and have it show prossess via ssh.

    then use the ssh to remove abusive prosseses.
     
    sz1hosting likes this.
  3. sz1hosting

    sz1hosting New Member

    21
    2
    Mar 31, 2014
    Is there not any scripts etc like nodewatch for kvm? Any other tips or any links please would be appreciated.
     
    Last edited by a moderator: Jun 24, 2014
  4. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    kvm is a virtulised as openvz is not so you do not have access to the prosses unless you get vps access witch the most common way is to add ssh keys to your templates then have to track via ssh :) .
     
  5. Aldryic C'boas

    Aldryic C'boas The Pony

    2,313
    2,652
    Apr 18, 2013
    Aldryic
    And this right here is why NOBODY will ever take you seriously.  What you've just described is dishonest, unethical, and a massive violation of privacy.
     
    mojeda, Jamson, splitice and 8 others like this.
  6. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    And everyone thinks you are a asshole.

    What i discribed is a vary common meathed to check vps's.

    It's called anti-abuse and i would be more sceaed if my provider did not check what the users are using as they could abuse the node and slow down other vps's aka if you want privicty get a dedicated server.
     
  7. MartinD

    MartinD Retired Staff Retired Staff Verified Provider

    1,410
    1,278
    May 15, 2013
    Again, Matthew, you fail to spell check your posts or read over the text before you post.

    You've also just called another forum user an 'asshole'. I've called out others for treating you poorly and I'll do the same to you despite you crying wolf in PM.

    Aldryic's post is very relevant and true. If you condone adding SSH keys to your templates then you're not to be trusted at all.
     
  8. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    It is how you solve the issue and why i would never offer kvm or xen vps's.

    You should look at your vps's for ssh keys as you will lickly find extra one's from you provider.

    Even ovh used to do this with dedicated servers.
     
  9. MartinD

    MartinD Retired Staff Retired Staff Verified Provider

    1,410
    1,278
    May 15, 2013
    It's not how you solve the issue at all, that's entirely misleading and dangerous.
     
  10. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    can you please share your suggstion?
     
  11. sz1hosting

    sz1hosting New Member

    21
    2
    Mar 31, 2014
    We keep any eye on banwidth and we use our own mail relay service too, and everything is else is manual we do not go into peoples kvm's with out there permission or there for sure would be a storm or cancellations heading our way, thanks for the feedback guys and thanks for trying @VPS Enthusiast your method can be done would need the terms to be changed and would cause a lot of problems, we can catch abuse no problem the thing is we have to do it manually ( without entering the kvm without permission ) so manual is the only way or?
     
  12. MartinD

    MartinD Retired Staff Retired Staff Verified Provider

    1,410
    1,278
    May 15, 2013
    I have a suggestion, no idea what a suggstion is though:

    1) Don't take on shit clients.

    2) Don't take on shit clients.

    3) Suspend shit clients if they abuse your KVM node.

    4) Get rid of shit clients.
     
    sz1hosting likes this.
  13. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    plus whmc based anti-fraud, stopforumspam api checks(as people buy bots) and extra questons or extra id for high risk countries.
     
  14. Aldryic C'boas

    Aldryic C'boas The Pony

    2,313
    2,652
    Apr 18, 2013
    Aldryic
    Yes, I _AM_ an asshole.  Why is it taking you so long to understand that calling me such is a simple truth, and not insulting in the slightest?

    Tell you what - why don't you start posting on all of the forums you scam at, and tell people that you load your templates with RSA keys so that you can go snooping at your discretion.  I would _LOVE_ to see the fallout from that.

    You're not a provider.  You're not even a 'free host'.  You're just a kid with absolutely no understanding of how things work;  no desire to actually learn anything beyond your twisted and grossly inaccurate assumptions; and honestly probably no capacity to learn even if you wanted to.  I can almost bring myself to feel pity for the poor saps that trust you enough to use your 'services'.
     
  15. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    Sorry for calling you an asshole i'm a bit streesed with school.

    we do not run kvm based vm only openvz so no need for rsa.

    We only go into a vm if we spot abuse in the node's prosses.

    I do own a free vps service and 2 free shared hosts and 1 free domain website.

    I support my users fully and even sometimes install and config programs for them.

    I unlike freevps.us allow gameservers as i have no sponsers to make angry as i use a rented node allowing me full freedom to offer what i like.

    I love running hosts, it is a fun thing to run as you get to meet people making new things all the time.

    We do not scam anyone.
     
  16. trewq

    trewq Active Member Verified Provider

    452
    205
    May 15, 2013
    Are you saying you enter VMs without permission?
     
  17. sz1hosting

    sz1hosting New Member

    21
    2
    Mar 31, 2014
    If anyone has some relevant information auto anti abuse in any ways possible please feel free to add that information or links.
     
  18. NilsX1337

    NilsX1337 New Member

    7
    1
    Jun 24, 2014
    MaxMind    Use ColoCrossing, they know how to fix it.
     
  19. mtwiscool

    mtwiscool New Member

    753
    45
    Jul 18, 2013
    It depends how much your users are worth.

    Ofcuase phoning the users up before activation might help but would be hard to imperment.

    I would suggest you drop all connections to your website from hosting providers and vpn providers to help ease abuse.
     
  20. sz1hosting

    sz1hosting New Member

    21
    2
    Mar 31, 2014
    We do not use colocrossing we use fdc servers - redstation - integria and for our usa location fiber hub las vegas.

    We use anti fraud methods etc, i am basically looking for automated anti abuse for kvm, we can easly stop abuse and stop abuse fast within a few hours of it happening or faster. Abuse is not a problem but manul anti abuse is a lot more work than automated. eg: node watch