Hi Again,
As usual, before positing here, please read the introduction thread first.
Securing your servers/network attacks from outside attacks requires some skills that could not be described here as it would take pages and it is not related directly to the gaming servers or precisely to srcds. What I would like to discuss here are the plugin hacks and the game hacks in general and most important, the way to protect against it. The provider could say that is to the client to manage and it's actually true but your customers may want to know.
As usual, before positing here, please read the introduction thread first.
Securing your servers/network attacks from outside attacks requires some skills that could not be described here as it would take pages and it is not related directly to the gaming servers or precisely to srcds. What I would like to discuss here are the plugin hacks and the game hacks in general and most important, the way to protect against it. The provider could say that is to the client to manage and it's actually true but your customers may want to know.
- Game Hacks
To what I've understand, the cheats or source hacks are quite difficult, not to say impossible to be detected totally as new hacks come out sooner than detected and the player (that is by VAC). On the side, you can use a banning system like SteamBans or Globan (Eventscript) to submit and eventually manage your bans but these are human operated. Is there a really good plugin or tool that we could offer to our customers? I have been using detox for a while and it showed some detections but still got cheaters on the servers. Can someone please provide us with more informations about these tools plz?
. - Plugin Hacks
What i can only call plugin hack is some one getting admin rights on a server through the use of a plugin like mani or amx. As far as I know, there is no tool to counter that sort of hack but to replicate and analize logs. That is something that may help in tracing the steam_ids of that kind of hacker wich is by far more dangerous than the cheating act, technically speaking. As this may seriously affect one and so much more customers, I think a GSP may consider involving time to fight that kind of hacks. I also wanted to know if some GSP did use internal banning systems and if they are any tool to protect from that kind of attack?
. - Other Hacks
Also, as there seems to be some leaks or bugs into some plugins, I wanted to know if there are any similar issues for the srcds itself that would provide rcon access or whathever the hack may do. If anyone knows of any security advice and issues about the srcds that he/she thought would be use sharing, any ideas are welcome.