<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet href="http://www.majordojo.com/projects/FeedManager/atom.xsl" type="text/xsl" media="screen"?>
<feed xmlns="http://www.w3.org/2005/Atom" 
      xmlns:thr="http://purl.org/syndication/thread/1.0">
  <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html" />
  <link rel="self" type="application/atom+xml" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html" />
  <id>tag:www.thinkjam.org,2009:/zoptuno//2/tag:www.thinkjam.org,2006:/zoptuno//2.394-</id>
  <updated>2009-09-21T03:10:33Z</updated>
  <title>Comments for 遭遇TrackBack Ping Spam攻击</title>
  <subtitle>My think. My dream.</subtitle>
  <generator uri="http://www.sixapart.com/movabletype/">Movable Type 4.31-zh-cn</generator>
  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394</id>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html" />
    <link rel="service.edit" type="application/atom+xml" href="http://www.thinkjam.org/loveblog/batom.cgi/weblog/blog_id=2/entry_id=394" title="遭遇TrackBack Ping Spam攻击" />
    <published>2006-11-19T13:41:31Z</published>
    <updated>2008-01-27T06:57:40Z</updated>
    <title>遭遇TrackBack Ping Spam攻击</title>
    <summary>最近不知怎么了，Blog的TrackBack Ping Spam又泛滥成灾，即使...</summary>
    <author>
      <name>平生一笑</name>
      <uri>http://www.thinkjam.org/zoptuno</uri>
    </author>
    
    <category term="MovableType" />
    
    <content type="html" xml:lang="en" xml:base="http://www.thinkjam.org/zoptuno/">
      <![CDATA[<p>最近不知怎么了，Blog的TrackBack Ping Spam又泛滥成灾，即使加装了<a href="http://alogblog.com/blog/" target="_blank">阿郎</a>的<a href="http://alogblog.com/movabletype/plugins/ccode_and_tcode_for_mt_33_version/" target="_blank">CCode and TCode</a>，还是无法阻止接连不断的垃圾引用通告。为此，我暂时关闭了<a href="http://www.postshow.net" target="_blank">Postshow</a>接收引用通告的功能，我本人在DreamHost的Blog，也收到了DH的邮件信息：</p>]]>
      <![CDATA[<blockquote>Hello,

<p>I am sorry but your mt-tb.cgi was loading up your server to over 100:</p>

<p>top - 15:00:03 up 8 days, 12:42,  3 users,  load average: 106.36, 74.61,<br />
54.69</p>

<p>Simply by disabling it I was able to get the load back down quite a bit<br />
(and it is still dropping):</p>

<p>top - 15:06:54 up 8 days, 12:49,  2 users,  load average: 3.86, 43.62,<br />
51.09</p>

<p>I am sorry I had to rename it but we can't let one user jam up an entire<br />
server like that unfortunately. </blockquote></p>

<p>竟然由于TrackBack Spam的攻击，导致虚拟主机的负载过高，被DH关闭了mt-tb.cgi的使用。</p>

<p>为解决此问题，我采用了以下几种方法，暂时抵御这可耻的TrackBack攻击。<ol><li>安装<a href="http://alogblog.com/movabletype/plugins/ccode_and_tcode_for_mt_33_version/" target="_blank">CCode and TCode</a>。</li><li>修改mt-tb.cgi为其它文件名，并在mt-config.cgi文件中指定TrackbackScript为新文件名，然后重建Blog。</li><li>可能的情况下，将Movable Type转用FastCGI替代以 cgiwrap 或 suexec 方式运行的CGI，然后重建Blog。</li><li>关闭收到过多垃圾引用通告的日记，切断这些已经被Spamer列入重点攻击对象的日记继续被攻击的可能。</li></ol></p>

<p>当然，这些方法不可能从根本上消灭Spam攻击，TrackBack这种实用的功能要想得到更进一步的推广，更好的发挥自己的效用，还要在底层设计上就考虑好Anti-Spam。</p>]]>
    </content>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2434</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2434" />
    <title>Comment from 栩哥哥 on 2006-11-20</title>
    <author>
        <name>栩哥哥</name>
<!--         -->
    </author>
    <content type="html" xml:lang="en" xml:base="">
	<![CDATA[<p>Dreamhost的空间很好用吗？ 怎么网上那么多人骂他们垃圾？</p>]]>
    </content>
    <published>2006-11-20T01:07:52Z</published>
    <updated>2006-11-20T01:07:52Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2435</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2435" />
    <title>Comment from shunz on 2006-11-20</title>
    <author>
        <name>shunz</name>
<!--        <uri>http://www.shunz.net/</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.shunz.net/">
	<![CDATA[<p>还是尽早考虑将postshow转到php平台吧，我觉得现在MT已经是落伍了:)</p>]]>
    </content>
    <published>2006-11-20T01:09:00Z</published>
    <updated>2006-11-20T01:09:00Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2436</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2436" />
    <title>Comment from Wood on 2006-11-20</title>
    <author>
        <name>Wood</name>
<!--        <uri>http://easun.org</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://easun.org">
	<![CDATA[<p>最近都是这样的。<br />
郁闷 : <a href="http://easun.org/archives/trackbacksblog.html" rel="nofollow"><a href="http://easun.org/archives/trackbacksblog.html" rel="nofollow"><a href="http://easun.org/archives/trackbacksblog.html" rel="nofollow">http://easun.org/archives/trackbacksblog.html</a></a></a></p>]]>
    </content>
    <published>2006-11-20T03:59:36Z</published>
    <updated>2006-11-20T03:59:36Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2437</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2437" />
    <title>Comment from Chris on 2006-11-20</title>
    <author>
        <name>Chris</name>
<!--        <uri>http://weblog.qiran.org</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://weblog.qiran.org">
	<![CDATA[<p>comments好像还好办，实在没办法我启用typekey验证，不过TB就头痛，打也打不死，只能把mt-tb.cgi改名。</p>

<p>刚刚安装了CCode&TCode，不知道效果如何，看一看</p>]]>
    </content>
    <published>2006-11-20T05:14:52Z</published>
    <updated>2006-11-20T05:14:52Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2438</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2438" />
    <title>Comment from danzhu on 2006-11-23</title>
    <author>
        <name>danzhu</name>
<!--         -->
    </author>
    <content type="html" xml:lang="en" xml:base="">
	<![CDATA[<p>我觉得最管用的一招是用Apache灵活的Rewrite模块!</p>

<p><a href="http://blog.kung-foo.tv/archives/001037.php" rel="nofollow"><a href="http://blog.kung-foo.tv/archives/001037.php" rel="nofollow"><a href="http://blog.kung-foo.tv/archives/001037.php" rel="nofollow">http://blog.kung-foo.tv/archives/001037.php</a></a></a></p>

<p>就是说对comments页的访问，一定要来自本网站的引用。我不信spammer能一个个网站仿过来。</p>]]>
    </content>
    <published>2006-11-23T07:08:11Z</published>
    <updated>2006-11-23T07:08:11Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2439</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2439" />
    <title>Comment from danzhu on 2006-11-23</title>
    <author>
        <name>danzhu</name>
<!--         -->
    </author>
    <content type="html" xml:lang="en" xml:base="">
	<![CDATA[<p>还有就是强制Preview和审核的机制，应该都会有效。<br />
<a href="http://www.learningmovabletype.com/archives/000246concerning_spam.php" rel="nofollow"><a href="http://www.learningmovabletype.com/archives/000246concerning_spam.php" rel="nofollow"><a href="http://www.learningmovabletype.com/archives/000246concerning_spam.php" rel="nofollow">http://www.learningmovabletype.com/archives/000246concerning_spam.php</a></a></a></p>]]>
    </content>
    <published>2006-11-23T07:09:41Z</published>
    <updated>2006-11-23T07:09:41Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2440</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2440" />
    <title>Comment from 平生一笑 on 2006-11-23</title>
    <author>
        <name>平生一笑</name>
<!--        <uri>http://www.thinkjam.org/zoptuno/</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.thinkjam.org/zoptuno/">
	<![CDATA[<p>Comment容易，TrackBack不容易啊<br />
用Rewrite模块防TrackBack，我现在也这样做了，呵呵</p>]]>
    </content>
    <published>2006-11-23T07:27:40Z</published>
    <updated>2006-11-23T07:27:40Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2441</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2441" />
    <title>Comment from 虛擬主機 on 2006-12-08</title>
    <author>
        <name>虛擬主機</name>
<!--        <uri>http://www.hosting.idv.tw</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://www.hosting.idv.tw">
	<![CDATA[<p>dreamhost 限時促銷,折價$99.99</p>]]>
    </content>
    <published>2006-12-08T08:19:48Z</published>
    <updated>2006-12-08T08:19:48Z</updated>
  </entry>

  <entry>
    <id>tag:www.thinkjam.org,2006:/zoptuno//2.394-comment:2442</id>
    <thr:in-reply-to ref="tag:www.thinkjam.org,2006:/zoptuno//2.394" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html"/>
    <link rel="alternate" type="text/html" href="http://www.thinkjam.org/zoptuno/archives/2006/11/anti-trackback-ping-spam.html#c2442" />
    <title>Comment from wells on 2006-12-14</title>
    <author>
        <name>wells</name>
<!--        <uri>http://wells.osall.com</uri> -->
    </author>
    <content type="html" xml:lang="en" xml:base="http://wells.osall.com">
	<![CDATA[<p>可能从设计的时候就考虑Anti-Spam才是最终积的解决之道<br />
看看我的想法，经过试验，挺有效果的，到目前为止还没有受到Spam的干扰<br />
<a href="http://wells.osall.com/blog/index.php?uid=1&m=content&p=344" rel="nofollow"><a href="http://wells.osall.com/blog/index.php?uid=1&m=content&p=344" rel="nofollow"><a href="http://wells.osall.com/blog/index.php?uid=1&m=content&p=344" rel="nofollow">http://wells.osall.com/blog/index.php?uid=1&m=content&p=344</a></a></a></p>]]>
    </content>
    <published>2006-12-14T01:44:20Z</published>
    <updated>2006-12-14T01:44:20Z</updated>
  </entry>

</feed>
