How to Recover a Domain Blocked by DNS Poisoning: Layered Diagnosis Before Cleaning or Reverse Proxy
A domain suddenly inaccessible in mainland China may not be DNS poisoning — this article provides a four-step check to confirm resolution-layer spoofing, rules out more common causes, and presents two recovery paths: temporary client-side self-rescue (DoH/DoT, hosts) and business-side recovery without changing the domain (poisoning cleaning, reverse proxy/high-defense CDN), plus post-recovery validation and recurrence monitoring.
DDoS Attack Log Analysis and Traceback Methods: Layered Forensics and Response When Bandwidth Is Saturated
When a server's bandwidth is saturated or CPU is maxed out, this article provides a layered log-based forensics method to classify the attack type by analyzing inbound traffic characteristics, L4 connection states, and L7 access records, and map them to actionable response actions.
Architecture for Handling Tbps-Scale DDoS Attacks: Single Data Center or Multi-Region Edge Offload?
Handling Tbps-scale DDoS attacks requires distributed edge-based offload across multiple locations; a single data center will break at the upstream link first. This article breaks down the four-layer responsibilities and provides a selection comparison table and a self-check checklist.
High-Protection IP vs High-Protection Server: Cost and Effectiveness Comparison
A detailed cost-benefit analysis comparing high-protection IP and high-protection servers across four key dimensions, with practical recommendations for different business scenarios.
Pros and Cons of Blocking Overseas UDP Traffic on Overseas High-Defense IP: How to Decide Among 4 Trade-offs
Blocking overseas UDP traffic on overseas high-defense IP can quickly stop reflection amplification attacks, but it also disrupts DNS, QUIC, gaming protocols, and more. This article breaks down the pros and cons and offers four strategic trade-offs.